2w ago
2026-08-27 20:17Z
HIGH

CVE-2026-59285 — Vmware Spring_for_graphql: Spring for GraphQL applications are vulnerable to Unsafe Deserialization when processing paginated GraphQL queries.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-59285

Spring for GraphQL applications are vulnerable to Unsafe Deserialization when processing paginated GraphQL queries. Spring for GraphQL 2.0.0 - 2.0.4 CVSSv3.1 8.1 (HIGH) · EPSS 36th percentile

CWECWE 502VNDVmwareVNDSpringTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2w ago
2026-08-27 20:17Z
CRIT

CVE-2026-59283 — Applications: that evaluate Spring Expression Language (SpEL) expressions using SimpleEvaluationContext may be vulnerable to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-59283

Applications that evaluate Spring Expression Language (SpEL) expressions using SimpleEvaluationContext may be vulnerable to a safety guard bypass when the SpEL expression compiler is active. Spring Framework 7.0.0 - 7.0.8 Spring Framework 6.2.0 - 6.2.19 Spring Framework 6.1.0 - 6.1.28 Spring Framework 6.0.0 - 6.0.30 Spring Framework 5.3.0 - 5.3.49 Spring Framework 5.2.25.RELEASE and earlier CVSSv3.1 9.1 (CRITICAL)

CWECWE 913TYPVulnerability
9.1
CVSS v3.1
96
Edit Score
2w ago
2026-08-27 20:17Z
HIGH

CVE-2026-54721 — Silverstripe: An authenticated CMS user with permission to configure a UserForms email recipient can use

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-54721

Silverstripe UserForms provides a visual form builder for the Silverstripe CMS. From 6.0.0 until 6.4.9, 7.0.7, and 7.1.1, the userform email recipient subject field in the CMS accepts a specially crafted payload that can be interpreted as executable server-side code. An authenticated CMS user with permission to configure a UserForms email recipient can use the subject field to run arbitrary code on the server, compromising confidentiality, integrity, and availability. This is CVSSv3.1 8.8 (HIGH)

CWECWE 94VNDSilverstripeTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2w ago
2026-08-27 20:17Z
HIGH

CVE-2026-53580 — Trilium: In versions prior to 0.104.0, the automatic image-download feature accepts file:// URLs in a

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-53580

Trilium is an open-source hierarchical note-taking application. In versions prior to 0.104.0, the automatic image-download feature accepts file:// URLs in a note's img tags and reads the referenced local file with no path validation, allowing any authenticated user to disclose arbitrary files readable by the Trilium process. When a text note is saved, Trilium scans its HTML for image sources and downloads each external one; because the HTML sanitizer keeps file as an allowed CVSSv3.1 8.1 (HIGH)

CWECWE 552CWECWE 73CWECWE 400VNDTriliumTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2w ago
2026-08-27 20:17Z
CRIT

CVE-2026-37072 — Veno: File Manager Project Veno File Manager Project 4.4.9 is vulnerable to Incorrect Access

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-37072

Veno File Manager Project Veno File Manager Project 4.4.9 is vulnerable to Incorrect Access Control in admin-head-updates.php. CVSSv3.1 9.8 (CRITICAL) · EPSS 5th percentile

CWECWE 284VNDVenoTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-08-27 20:17Z
CRIT

CVE-2026-37071 — Arbitrary: File Rename Leading to Privilege Escalation in Actions::renameFile() function in Veno File Manager

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-37071

Arbitrary File Rename Leading to Privilege Escalation in Actions::renameFile() function in Veno File Manager Project 4.4.9 allows an authenticated attacker with 'reanme' permission to take over the super administrator account via a specially crafted POST request to the affected endpoint renaming the application configuration file and triggering a rebuild of configuration and resetting super administrator credentials to default values. CVSSv3.1 9.8 (CRITICAL) · EPSS 5th percentile

CWECWE 269VNDArbitraryTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-08-27 20:17Z
HIGH

CVE-2026-37068 — Arbitrary: file write in /vfm-admin/index.php?section=translations&action=update in Veno File Manager Project 4.4.9 allows an authenticated

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-37068

Arbitrary file write in /vfm-admin/index.php?section=translations&action=update in Veno File Manager Project 4.4.9 allows an authenticated user with the role of super administrator to overwrite any php file in the application via a specially crafted POST request to the affected endpoint. CVSSv3.1 8.1 (HIGH) · EPSS 5th percentile

CWECWE 22VNDArbitraryTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
728 × 90 / responsive · programmatic ad slot
2w ago
2026-08-27 20:17Z
CRIT

CVE-2026-37065 — Veno: File Manager Project 4.4.9 is vulnerable to Arbitrary File Deletion in /vfm-admin/index.php?section=translations&action=update&remove=.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-37065

Veno File Manager Project 4.4.9 is vulnerable to Arbitrary File Deletion in /vfm-admin/index.php?section=translations&action=update&remove=. CVSSv3.1 9.1 (CRITICAL) · EPSS 5th percentile

CWECWE 552VNDVenoTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
2w ago
2026-08-27 20:17Z
CRIT

CVE-2026-37007 — FileWriterTool: A vulnerability in FileWriterTool in crewai-tools <= 1.10.2rc1 allows a remote attacker to achieve

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-37007

A vulnerability in FileWriterTool in crewai-tools <= 1.10.2rc1 allows a remote attacker to achieve code execution via malicious path traversal sequences in the filename argument. CVSSv3.1 9.8 (CRITICAL) · EPSS 17th percentile

CWECWE 22VNDFilewritertoolTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-08-27 20:17Z
CRIT

CVE-2026-37006 — WebSocket: A vulnerability in the WebSocket endpoint of gpt-researcher v0.14.7 and before allows an unauthenticated

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-37006

A vulnerability in the WebSocket endpoint of gpt-researcher v0.14.7 and before allows an unauthenticated remote attacker to achieve code execution via malicious Model Context Protocol configurations. CVSSv3.1 9.8 (CRITICAL)

CWECWE 287VNDWebsocketTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-08-27 20:17Z
CRIT

CVE-2026-37004 — BerriAI: litellm <=1.82.4 is vulnerable to Server-Side Template Injection (SSTI), which allows unauthenticated remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-37004

BerriAI litellm <=1.82.4 is vulnerable to Server-Side Template Injection (SSTI), which allows unauthenticated remote attackers to execute arbitrary OS commands via a crafted dotprompt_content parameter in the /prompts/test endpoint due to use of an unsandboxed jinja2.Environment. CVSSv3.1 9.8 (CRITICAL) · EPSS 16th percentile

CWECWE 1336VNDBerriaiTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-08-27 20:17Z
CRIT

CVE-2026-37003 — Agno: up to and including 2.5.8 is vulnerable to Remote Code Execution (RCE) via

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-37003

Agno up to and including 2.5.8 is vulnerable to Remote Code Execution (RCE) via prompt injection. The PythonTools and ShellTools components pass unsanitized, LLM-generated arguments directly to execution sinks including exec(), runpy.run_path(), and subprocess.run(). An unauthenticated attacker can exploit this by embedding malicious instructions in content processed by the agent (such as web pages or documents), allowing for arbitrary code and OS command execution on the hos CVSSv3.1 9.8 (CRITICAL) · EPSS 46th percentile

CWECWE 94VNDAgnoTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-08-27 20:17Z
CRIT

CVE-2026-35869 — Command: A Command Injection vulnerability exists in the bs_SetLimitCli_info function within the libshare.so library of

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-35869

A Command Injection vulnerability exists in the bs_SetLimitCli_info function within the libshare.so library of LB-link Router AC450M V4.0.0. This flaw occurs due to insufficient validation and sanitization of user-supplied input before it is passed to a system-level command execution context. An attacker can exploit this vulnerability by injecting specially crafted shell metacharacters or payloads into the vulnerable parameter, resulting in the execution of arbitrary operatin CVSSv3.1 9.8 (CRITICAL)

CWECWE 20VNDCommandTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-08-27 20:17Z
CRIT

CVE-2026-35868 — Command: A Command Injection vulnerability exists in the bs_SetLimitCli_info function within the libshare.so library of

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-35868

A Command Injection vulnerability exists in the bs_SetLimitCli_info function within the libshare.so library of LB-link Router AC2100_AZ3 V1.0.4. This flaw occurs due to insufficient validation and sanitization of user-supplied input before it is passed to a system-level command execution context. An attacker can exploit this vulnerability by injecting specially crafted shell metacharacters or payloads into the vulnerable parameter, resulting in the execution of arbitrary oper CVSSv3.1 9.8 (CRITICAL)

CWECWE 20VNDCommandTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-08-27 20:17Z
CRIT

CVE-2026-30612 — Time4: An issue in Time4 Popcorn for Windows <= 6.2.1.18 and Time4Popcorn for MacOS <=

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-30612

An issue in Time4 Popcorn for Windows <= 6.2.1.18 and Time4Popcorn for MacOS <= 6.2.1.17 and Time4Popcorn for Android <= 3.5.0.173 allows a remote attacker to execute arbitrary code via the updater.exe for windows, PT.updd on MacOS components CVSSv3.1 9.8 (CRITICAL) · EPSS 18th percentile

CWECWE 494VNDTime4TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-08-27 20:17Z
CRIT

CVE-2026-19092 — Tutor: The Tutor LMS WordPress plugin before 4.0.6 does not prevent request data from overwriting

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-19092

The Tutor LMS WordPress plugin before 4.0.6 does not prevent request data from overwriting internal variables while rendering templates, allowing unauthenticated users to invoke arbitrary zero-argument PHP functions and receive their output. CVSSv3.1 9.8 (CRITICAL)

VNDTutorTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-08-27 20:17Z
HIGH

CVE-2026-10036 — SpeechBrain: before 1.1.1 contains an arbitrary code execution vulnerability that allows attackers to execute

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10036

SpeechBrain before 1.1.1 contains an arbitrary code execution vulnerability that allows attackers to execute arbitrary code by supplying a crafted CKPT.yaml checkpoint metadata file parsed with PyYAML's unsafe loader during candidate enumeration in Checkpointer.recover_if_possible(). Attackers can embed malicious Python object construction tags such as !!python/object/apply in any CKPT.yaml file within the configured checkpoint path to trigger code execution during candidate CVSSv3.1 8.8 (HIGH)

CWECWE 502VNDSpeechbrainTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2w ago
2026-08-27 17:21Z
CRIT

CVE-2026-81735 — startServer.ts in the mcp-http-server package of UI-TARS-desktop defaulted its listen address to '::' when

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-81735

startServer.ts in the mcp-http-server package of UI-TARS-desktop defaulted its listen address to '::' when no host was given, so startSseAndStreamableHttpMcpServer bound the Streamable HTTP and SSE MCP transports to every interface, and its authentication middleware was optional: middlewares are applied only when a caller supplies them. The @agent-infra/mcp-server-commands and @agent-infra/mcp-server-filesystem entry points call startSseAndStreamableHttpMcpServer with a host CVSSv3.1 10.0 (CRITICAL)

CWECWE 306TYPVulnerability
10.0
CVSS v3.1
100
Edit Score
2w ago
2026-08-27 17:21Z
CRIT

CVE-2026-81707 — openssl_encrypt before 1.4.9 fails to sanitize the email field of imported identity documents, allowing

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-81707

openssl_encrypt before 1.4.9 fails to sanitize the email field of imported identity documents, allowing attackers to inject ANSI escape sequences that forge the fingerprint verification line displayed to users. Attackers can deliver a crafted identity bundle through normal contact-exchange flows or keyserver responses to manipulate terminal output and display a fraudulent fingerprint, bypassing the out-of-band verification mechanism that protects against key substitution atta CVSSv3.1 9.8 (CRITICAL)

CWECWE 20TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-08-27 17:21Z
CRIT

CVE-2026-81702 — openssl_encrypt before 1.4.9 fails to re-derive and validate fingerprints when loading identities from identity.json

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-81702

openssl_encrypt before 1.4.9 fails to re-derive and validate fingerprints when loading identities from identity.json, allowing attackers to substitute public keys in identity stores. Attackers can replace legitimate public keys with their own while maintaining the claimed fingerprint, enabling silent key substitution where encryption uses attacker keys and signature verification appears valid. CVSSv3.1 9.8 (CRITICAL)

CWECWE 345TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-08-27 17:21Z
CRIT

CVE-2026-81701 — openssl_encrypt versions before 1.4.9 use a denylist to identify trusted built-in plugins, allowing unsigned

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-81701

openssl_encrypt versions before 1.4.9 use a denylist to identify trusted built-in plugins, allowing unsigned plugins in top-level plugins/ directories and unknown subdirectories to bypass signature verification. Attackers can place malicious unsigned plugins following documented installation paths to achieve arbitrary code execution in the CLI process with access to passwords and cryptographic keys. CVSSv3.1 9.8 (CRITICAL)

CWECWE 347TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-08-27 17:21Z
CRIT

CVE-2026-81700 — Attackers holding compromised-then-revoked signing keys or expired project keys can bypass signature verification to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-81700

openssl_encrypt versions before 1.4.9 contain a signature verification vulnerability in gpg_runner.verify_detached that accepts revoked and expired keys by only checking VALIDSIG status without inspecting REVKEYSIG, EXPKEYSIG, or gpg exit codes. Attackers holding compromised-then-revoked signing keys or expired project keys can bypass signature verification to execute malicious plugins in the host process. CVSSv3.1 9.8 (CRITICAL)

CWECWE 347TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-08-27 17:20Z
HIGH

CVE-2026-81683 — openssl_encrypt (pip package openssl-encrypt) versions 1.4.8 and earlier store an mTLS client private key

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-81683

openssl_encrypt (pip package openssl-encrypt) versions 1.4.8 and earlier store an mTLS client private key in cleartext within a world-readable (0644) SharedPreferences file via the desktop GUI's Settings screen 'combined certificate and private key' PEM field. A local attacker with file system access can read the exposed private key. Version 1.4.9 writes the PEM to a dedicated 0600 file, keeps only its path in SharedPreferences, and migrates/scrubs existing cleartext values. CVSSv3.1 8.4 (HIGH)

CWECWE 312TYPVulnerability
8.4
CVSS v3.1
92
Edit Score
2w ago
2026-08-27 17:20Z
CRIT

CVE-2026-81098 — Telnyx: The Telnyx MCP server exposed its HTTP transport on every interface and did not

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-81098

The Telnyx MCP server exposed its HTTP transport on every interface and did not require a caller credential. packages/mcp-server/src/http.ts served MCP on the root path with a listener bound to all interfaces and parsed the caller's authentication headers in a mode that did not fail when they were absent, so a request without any credential completed initialisation and dispatched tools. Dispatch forwarded the server's own stored credentials, the Telnyx API key and client secr CVSSv3.1 9.1 (CRITICAL)

CWECWE 306VNDTelnyxTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
2w ago
2026-08-27 17:20Z
HIGH

CVE-2026-81097 — Version 1.6.1 restricts the requires the sandbox permits to a data-only list and blocks

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-81097

The execute_ruby tool is documented as a read-only Ruby sandbox and is enforced by a pattern denylist together with replacements for the process-spawning methods on Kernel. The pseudo-terminal library's spawn entry points are neither in the denylist nor replaced, so a normal tool call could reach them and start a shell, executing commands as the account running the server and outside the guarded methods. The denylist was introduced with the tool in 1.4.0 and never covered tho CVSSv3.1 8.4 (HIGH)

CWECWE 78TYPVulnerability
8.4
CVSS v3.1
92
Edit Score