3d ago
2026-09-10 22:17Z
CRIT

CVE-2026-80424 — IBM: DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-80424

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to create arbitrary files due to path traversal during archive extraction. CVSSv3.1 9.1 (CRITICAL)

CWECWE 22VNDIbmTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
3d ago
2026-09-10 22:17Z
HIGH

CVE-2026-80378 — IBM: DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-80378

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to cause a denial of service due to improper authorization. CVSSv3.1 8.5 (HIGH)

CWECWE 285VNDIbmTYPVulnerability
8.5
CVSS v3.1
93
Edit Score
3d ago
2026-09-10 22:17Z
HIGH

CVE-2026-79742 — IBM: Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79742

IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute arbitrary code due to an incomplete environment variable blocklist. CVSSv3.1 8.8 (HIGH)

CWECWE 94VNDIbmTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3d ago
2026-09-10 22:17Z
CRIT

CVE-2026-79724 — IBM: Langflow OSS 1.0.0 through 1.11.5 could allow a remote attacker to execute arbitrary

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79724

IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote attacker to execute arbitrary OS commands due to improper neutralization of special elements used in an OS command. CVSSv3.1 9.8 (CRITICAL)

CWECWE 78VNDIbmTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
3d ago
2026-09-10 22:17Z
HIGH

CVE-2026-78575 — IBM: Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78575

IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute arbitrary commands due to improper validation of command-line arguments in the MCP stdio server configuration. CVSSv3.1 8.8 (HIGH)

CWECWE 78VNDIbmTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3d ago
2026-09-10 22:16Z
CRIT

CVE-2026-78573 — IBM: ContextForge MCP Gateway 1.0.0 through 1.0.7 could allow a remote attacker to gain

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78573

IBM ContextForge MCP Gateway 1.0.0 through 1.0.7 could allow a remote attacker to gain administrative access due to the use of default credentials. CVSSv3.1 9.8 (CRITICAL)

CWECWE 1392VNDIbmTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
3d ago
2026-09-10 22:16Z
HIGH

CVE-2026-78571 — IBM: Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78571

IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute arbitrary code due to an unguarded eval() call on attacker-controlled input. CVSSv3.1 8.8 (HIGH)

CWECWE 94VNDIbmTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
728 × 90 / responsive · programmatic ad slot
3d ago
2026-09-10 22:16Z
HIGH

CVE-2026-78569 — IBM: Langflow OSS 1.0.0 through 1.11.5 could allow an authenticated attacker to execute arbitrary

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78569

IBM Langflow OSS 1.0.0 through 1.11.5 could allow an authenticated attacker to execute arbitrary code due to an incomplete denylist in the security scanner. CVSSv3.1 8.8 (HIGH)

CWECWE 78VNDIbmTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3d ago
2026-09-10 22:16Z
HIGH

CVE-2026-76059 — IBM: Langflow OSS 1.0.0 through 1.11.5 An attacker who could submit custom component source

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-76059

IBM Langflow OSS 1.0.0 through 1.11.5 An attacker who could submit custom component source code could bypass the static security scanner by crafting an annotated class-body assignment that resolved to a dangerous callable through alias tracking; the resolved value was never checked against the dangerous callable blocklist due to the logic error. If the crafted component reached the runtime execution path, the attacker could cause arbitrary operating system commands to execute CVSSv3.1 8.8 (HIGH)

CWECWE 693VNDIbmTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3d ago
2026-09-10 22:16Z
HIGH

CVE-2026-75777 — IBM: Aspera Enterprise WebApps 1.0.0 through 1.0.5 could allow a local attacker to escape

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-75777

IBM Aspera Enterprise WebApps 1.0.0 through 1.0.5 could allow a local attacker to escape container protections due to unrestricted system calls being permitted within the container. CVSSv3.1 8.8 (HIGH)

CWECWE 269VNDIbmTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3d ago
2026-09-10 22:16Z
HIGH

CVE-2026-75624 — IBM: App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.12.27 could allow a

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-75624

IBM App Connect Enterprise 13.0.1.0 through 13.0.8.1, and 12.0.1.0 through 12.0.12.27 could allow a remote authenticated attacker to bypass security restrictions due to incorrect authorization. CVSSv3.1 8.8 (HIGH)

CWECWE 863VNDIbmTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
3d ago
2026-09-10 22:16Z
CRIT

CVE-2026-45764 — Suricata: Prior to versions 7.0.16 and 8.0.5, a protocol change while processing HTTP/2 traffic could

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-45764

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to versions 7.0.16 and 8.0.5, a protocol change while processing HTTP/2 traffic could lead to type confusion in Suricata. Crafted traffic may cause Suricata to crash, resulting in denial of service. Versions 7.0.16 and 8.0.5 contain a fix. As a workaround, disable HTTP/2 parsing if it is not required. CVSSv3.1 9.1 (CRITICAL)

CWECWE 843VNDSuricataTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
3d ago
2026-09-10 22:16Z
CRIT

CVE-2026-19646 — IBM: Common Licensing Agent 9.0, Agent 9.0.0.1, Agent 9.0.0.2, ART 9.0, ART 9.0.0.1, and

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-19646

IBM Common Licensing Agent 9.0, Agent 9.0.0.1, Agent 9.0.0.2, ART 9.0, ART 9.0.0.1, and ART 9.0.0.2 could allow a remote attacker to redirect users to an arbitrary domain due to improper validation of the HTTP Host header. CVSSv3.1 9.1 (CRITICAL)

CWECWE 1149VNDIbmTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
3d ago
2026-09-10 21:17Z
CRIT

CVE-2026-89094 — Forgejo: before 16.0.4 allows remote code execution via a crafted template repository because template

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-89094

Forgejo before 16.0.4 allows remote code execution via a crafted template repository because template expansion on files in .forgejo/template is mishandled. CVSSv3.1 9.9 (CRITICAL)

CWECWE 1336VNDForgejoTYPVulnerability
9.9
CVSS v3.1
100
Edit Score
3d ago
2026-09-10 21:17Z
CRIT

CVE-2026-85025 — IBM: Langflow OSS 1.0.0 through 1.11.5 Langflow could allow an unauthenticated attacker to execute

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-85025

IBM Langflow OSS 1.0.0 through 1.11.5 Langflow could allow an unauthenticated attacker to execute arbitrary code and access or modify chat sessions through publicly shared MCP project endpoints due to improper enforcement of public-flow security restrictions and session isolation controls. CVSSv3.1 9.8 (CRITICAL)

CWECWE 863VNDIbmTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
3d ago
2026-09-10 21:17Z
CRIT

CVE-2026-75940 — Lenovo: A vulnerability was reported in Lenovo Health Android Application, distributed exclusively in the Chinese

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-75940

A vulnerability was reported in Lenovo Health Android Application, distributed exclusively in the Chinese market, that could allow an attacker to access sensitive health-related information. CVSSv3.1 9.1 (CRITICAL)

CWECWE 798VNDLenovoTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
3d ago
2026-09-10 20:17Z
CRIT

CVE-2026-89086 — In the jose package before 0.11.0 for OCaml, library calls to validate an RSA

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-89086

In the jose package before 0.11.0 for OCaml, library calls to validate an RSA signature only confirm that PKCS #1 decoding succeeds, and proceed to declare the signature valid without the required steps that involve the public key. CVSSv3.1 9.1 (CRITICAL)

CWECWE 347TYPVulnerability
9.1
CVSS v3.1
96
Edit Score
3d ago
2026-09-10 20:17Z
HIGH

CVE-2026-89054 — OpenNMS: A missing authorization vulnerability in OpenNMS Horizon allows configuration changes without authentication.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-89054

A missing authorization vulnerability in OpenNMS Horizon allows configuration changes without authentication. The Spring Security policy for the /api/v2 REST API defines authorization rules for every HTTP method except PATCH, so the shipped @PATCH configuration endpoints for event configuration and SNMP data collection (which enable and disable event definitions and data-collection sources) are reachable with no authorization enforced. An unauthenticated attacker able to reac CVSSv3.1 8.2 (HIGH)

CWECWE 862VNDOpennmsTYPVulnerability
8.2
CVSS v3.1
91
Edit Score
3d ago
2026-09-10 19:17Z
CRIT

CVE-2026-89049 — A server-side request forgery issue due to improper validation of equivalent address representations in

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-89049

A server-side request forgery issue due to improper validation of equivalent address representations in the port forwarding to remote hosts functionality in Amazon AWS Systems Manager Agent (SSM Agent) before 3.3.4851.0 on all platforms might allow an authenticated remote user to bypass the remote destination denylist and reach link-local endpoints, potentially obtaining the temporary IAM role credentials of a managed instance and acting with that role's permissions from outs CVSSv3.1 9.9 (CRITICAL)

CWECWE 918CWECWE 1289TYPVulnerability
9.9
CVSS v3.1
100
Edit Score
3d ago
2026-09-10 19:17Z
HIGH

CVE-2026-88036 — Improper neutralization of special elements in data query logic in the GridFS component of

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-88036

Improper neutralization of special elements in data query logic in the GridFS component of the MongoDB C Driver can cause a caller-supplied structured file identifier to be interpreted as a query condition rather than as a literal identifier. An authenticated user who can influence the identifier passed by an affected application may obtain stored file content beyond the intended target or cause all GridFS file chunks in the affected bucket to be removed, rendering stored fil CVSSv3.1 8.3 (HIGH)

CWECWE 943TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
3d ago
2026-09-10 19:17Z
HIGH

CVE-2026-88034 — Improper neutralization of special elements in data query logic in the GridFS component of

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-88034

Improper neutralization of special elements in data query logic in the GridFS component of the MongoDB C++ Driver can cause a caller-supplied structured file identifier to be interpreted as a query condition rather than as a literal identifier. An authenticated user who can influence the identifier passed by an affected application may obtain stored file content beyond the intended target or cause all GridFS file chunks in the affected bucket to be removed, rendering stored f CVSSv3.1 8.3 (HIGH)

CWECWE 943TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
3d ago
2026-09-10 19:17Z
HIGH

CVE-2026-88033 — Improper neutralization of special elements in data query logic in the GridFS component of

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-88033

Improper neutralization of special elements in data query logic in the GridFS component of the MongoDB Java Driver can cause a caller-supplied structured file identifier to be interpreted as a query condition rather than as a literal identifier. An authenticated user who can influence the identifier passed by an affected application may obtain stored file content beyond the intended target or cause all GridFS file chunks in the affected bucket to be removed, rendering stored CVSSv3.1 8.3 (HIGH)

CWECWE 943TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
3d ago
2026-09-10 19:17Z
HIGH

CVE-2026-87090 — Consul: and Consul Enterprise are vulnerable to an authorization bypass in the catalog node-write

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-87090

Consul and Consul Enterprise are vulnerable to an authorization bypass in the catalog node-write path that may allow an authenticated attacker to delete another node's catalog registration and take over its node identity. An attacker with a token granting node-write permission on any single node name may exploit this issue if they can obtain the node ID of a node they do not control. This vulnerability (CVE-2026-87090) is fixed in Consul 2.0.4 and Consul Enterprise 1.21.18, 1 CVSSv3.1 8.3 (HIGH)

CWECWE 863VNDConsulTYPVulnerability
8.3
CVSS v3.1
92
Edit Score
3d ago
2026-09-10 18:18Z
HIGH

CVE-2026-89046 — zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds read vulnerability in Zstd.getFrameContentSize that fails

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-89046

zstd-jni versions 1.5.5-6 through 1.5.7-13 contain an out-of-bounds read vulnerability in Zstd.getFrameContentSize that fails to validate negative srcPosition arguments. Attackers can supply negative offset values that bypass bounds checks and reach the native frame-header parser, causing out-of-bounds memory reads that lead to information disclosure or JVM crashes. CVSSv3.1 8.2 (HIGH)

CWECWE 125TYPVulnerability
8.2
CVSS v3.1
91
Edit Score
3d ago
2026-09-10 18:18Z
CRIT

CVE-2026-89042 — passport-saml-encrypted through 0.1.13 makes SAML signature verification conditional on an optional cert option, allowing

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-89042

passport-saml-encrypted through 0.1.13 makes SAML signature verification conditional on an optional cert option, allowing attackers to bypass authentication by submitting unsigned SAML responses. Attackers can post forged SAML responses with arbitrary NameID and attributes to the assertion consumer service endpoint to receive authenticated profiles without valid signatures. CVSSv3.1 9.1 (CRITICAL)

CWECWE 347TYPVulnerability
9.1
CVSS v3.1
96
Edit Score