2026-08-17
2026-08-17 21:16Z
HIGH

CVE-2026-64657 — Budibase: Prior to 3.39.19, the PostgreSQL datasource connector in packages/server/src/integrations/postgres.ts interpolates the user-controlled schema configuration

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-64657

Budibase is an open-source low-code platform. Prior to 3.39.19, the PostgreSQL datasource connector in packages/server/src/integrations/postgres.ts interpolates the user-controlled schema configuration field into a SET search_path statement without escaping embedded double quotes, allowing an authenticated administrator who saves or tests the datasource to execute arbitrary SQL through the simple query protocol. This issue is fixed in version 3.39.19. CVSSv3.1 8.4 (HIGH)

CWECWE 89VNDBudibaseTYPVulnerability
8.4
CVSS v3.1
92
Edit Score
2026-08-17
2026-08-17 21:16Z
HIGH

CVE-2026-63409 — Deskflow: From 1.17.0 until continuous build 1.26.0.296, a malicious Deskflow server can send an odd-length

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-63409

Deskflow is a keyboard and mouse sharing app. From 1.17.0 until continuous build 1.26.0.296, a malicious Deskflow server can send an odd-length DSOP vector to ServerProxy::setOptions() in src/lib/client/ServerProxy.cpp, causing the missing value after the final option key to be read beyond the vector during the PacketStreamFilter::filterEvent to ServerProxy::handleData() to ServerProxy::parseHandshakeMessage() call chain and crash the connected client. This issue is fixed in CVSSv3.1 8.2 (HIGH)

CWECWE 125VNDDeskflowTYPVulnerability
8.2
CVSS v3.1
91
Edit Score
2026-08-17
2026-08-17 21:16Z
CRIT

CVE-2026-47698 — vm2 is an open source vm/sandbox for Node.js.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-47698

vm2 is an open source vm/sandbox for Node.js. Prior to 3.11.6, lib/bridge.js and lib/setup-sandbox.js fail to block stacked indirection through Function.prototype.call around dangerous host prototype getter and setter mutators, allowing sandbox code to sever a host intrinsic's prototype chain and reach e.constructor.constructor for arbitrary host command execution. This issue is fixed in version 3.11.6. CVSSv3.1 9.8 (CRITICAL)

CWECWE 913TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-08-17
2026-08-17 21:16Z
CRIT

CVE-2026-47686 — vm2 is an open source vm/sandbox for Node.js.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-47686

vm2 is an open source vm/sandbox for Node.js. Prior to 3.11.6, handleException() in lib/setup-sandbox.js sanitizes SuppressedError.error, SuppressedError.suppressed, and AggregateError.errors but does not sanitize Error.cause, allowing sandbox code to obtain a powerful host object such as process from an embedder-exposed host function that throws an error with that object as its cause and then execute arbitrary host commands. This issue is fixed in version 3.11.6. CVSSv3.1 9.9 (CRITICAL)

CWECWE 693TYPVulnerability
9.9
CVSS v3.1
100
Edit Score
2026-08-17
2026-08-17 21:16Z
CRIT

CVE-2026-39255 — Buffer: Overflow vulnerability in SteelSeries GG (macOS) v.107.0.0 allows a remote attacker to execute

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-39255

Buffer Overflow vulnerability in SteelSeries GG (macOS) v.107.0.0 allows a remote attacker to execute arbitrary code via the libSSEdevice.dylib, dup_wcs components CVSSv3.1 9.8 (CRITICAL)

CWECWE 120VNDBufferTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-08-17
2026-08-17 21:16Z
CRIT

CVE-2026-39254 — Buffer: Overflow vulnerability in SteelSeries GG (macOS) v.107.0.0 allows a remote attacker to execute

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-39254

Buffer Overflow vulnerability in SteelSeries GG (macOS) v.107.0.0 allows a remote attacker to execute arbitrary code via the libSSEdevice.dylib, CxAudioHidDevice::DeviceGetDescriptionString components CVSSv3.1 9.8 (CRITICAL)

CWECWE 120VNDBufferTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-08-17
2026-08-17 21:10Z
INFO

v9.6.0-rc6

BloodHound releases·github.com

BloodHound v9.6.0-rc6 release candidate published with a single change: AzureHound dependency updated to v3.1.0. This is a pre-release version with 30 commits to main since the previous rc5 tag.

SWBloodhoundVNDSpecteropsTYPTool
28
Edit Score
728 × 90 / responsive · programmatic ad slot
2026-08-17
2026-08-17 20:16Z
CRIT

CVE-2026-71472 — This vulnerability allows an authenticated attacker, such as a hub administrator or a Search

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-71472

A flaw was found in acm-search-v2-rhel9. This vulnerability allows an authenticated attacker, such as a hub administrator or a Search Custom Resource (CR) editor, to inject malicious shell commands or SQL statements. This occurs because the WORK_MEM string provided in the Search CR is not properly validated before being used in a bash script and an SQL query. Successful exploitation could lead to arbitrary code execution within the privileged postgres pod, potentially comprom CVSSv3.1 9.1 (CRITICAL)

CWECWE 78TYPVulnerability
9.1
CVSS v3.1
96
Edit Score
2026-08-17
2026-08-17 20:16Z
HIGH

CVE-2026-70495 — A flaw was found in search-v2-operator.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-70495

A flaw was found in search-v2-operator. This component's `search-serviceaccount` has overly broad permissions, allowing it to impersonate users and groups across the entire cluster. If an attacker gains access to any of the pods running under this service account, they could exploit this to achieve `system:masters` access, granting them full control over the cluster. CVSSv3.1 8.8 (HIGH)

CWECWE 269TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-08-17
2026-08-17 20:16Z
CRIT

CVE-2026-68004 — OSSRS: An issue in OSSRS SRS (Simple Realtime Server) <v5.0.213 allows a remote attacker to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-68004

An issue in OSSRS SRS (Simple Realtime Server) <v5.0.213 allows a remote attacker to execute arbitrary code via RTMP publish authorization, vhost-level security configuration (security.enabled), SrsSecurity::check(), trunk/src/app/srs_app_security.cpp, and SRS RTMP listener components CVSSv3.1 9.8 (CRITICAL)

CWECWE 284VNDOssrsTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-08-17
2026-08-17 20:16Z
CRIT

CVE-2026-67678 — File: Upload vulnerability in RainyGao-Hithub DocSys v.2.02.80 allows a remote attacker to execute arbitrary

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-67678

File Upload vulnerability in RainyGao-Hithub DocSys v.2.02.80 allows a remote attacker to execute arbitrary code CVSSv3.1 9.8 (CRITICAL)

CWECWE 434TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-08-17
2026-08-17 20:16Z
HIGH

CVE-2026-57485 — Stirling: Prior to 2.9.0, the /api/v1/pipeline/handleData endpoint in app/core/src/main/java/stirling/software/SPDF/controller/api/pipeline/PipelineProcessor.java injects the STIRLING

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-57485

Stirling-PDF is a locally hosted web application that facilitates various operations on PDF files. Prior to 2.9.0, the /api/v1/pipeline/handleData endpoint in app/core/src/main/java/stirling/software/SPDF/controller/api/pipeline/PipelineProcessor.java injects the STIRLING-PDF-BACKEND-API-USER API key into pipeline subrequests, allowing an authenticated ROLE_USER to retrieve the key through /api/v1/user/get-api-key, impersonate the internal service account, bypass normal rate CVSSv3.1 8.5 (HIGH)

CWECWE 200CWECWE 522VNDStirlingTYPVulnerability
8.5
CVSS v3.1
93
Edit Score
2026-08-17
2026-08-17 20:16Z
HIGH

CVE-2026-57233 — Notepad++ is a free and open-source source code editor.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-57233

Notepad++ is a free and open-source source code editor. Prior to 8.9.7, the WinGup decompress function joins untrusted ZIP entry names to unzipDestTo without canonical containment validation, allowing an entry such as ../mimeTools/mimeTools.dll to overwrite a DLL in a sibling plugin directory and execute attacker-controlled code when Notepad++ next loads that plugin. This issue is fixed in version 8.9.7. CVSSv3.1 8.1 (HIGH)

CWECWE 22TYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-08-17
2026-08-17 20:16Z
CRIT

CVE-2026-19478 — GitLab: has remediated an issue in GitLab CE/EE affecting all versions from 18.2 before

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-19478

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.2 before 18.11.11, 19.0 before 19.0.8, 19.1 before 19.1.6, and 19.2 before 19.2.4 that under certain conditions could allow an unauthenticated user to remotely modify or delete public projects and user data via a GraphQL directive. CVSSv3.1 9.4 (CRITICAL)

CWECWE 94VNDGitlabTYPVulnerability
9.4
CVSS v3.1
97
Edit Score
2026-08-17
2026-08-17 19:16Z
CRIT

CVE-2026-66792 — This vulnerability allows a user on a managed cluster to escalate their privileges by

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-66792

A flaw was found in the multicloud-operators-subscription component. This vulnerability allows a user on a managed cluster to escalate their privileges by creating a Subscription with specific, crafted annotations. Successful exploitation grants the attacker the ability to deploy resources into any namespace with the elevated permissions of the controller's Service Account, potentially leading to unauthorized access and control over cluster resources. CVSSv3.1 9.9 (CRITICAL)

CWECWE 863TYPVulnerability
9.9
CVSS v3.1
100
Edit Score
2026-08-17
2026-08-17 19:16Z
CRIT

CVE-2026-50775 — SSRF: A blind SSRF attack in DataHub v.1.5.0.1 allows a remote attacker to execute arbitrary

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-50775

A blind SSRF attack in DataHub v.1.5.0.1 allows a remote attacker to execute arbitrary code via the server retrieving an image from a crafted URL, and it fails to return the content or any errors directly. CVSSv3.1 9.8 (CRITICAL)

CWECWE 918VNDSsrfTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-08-17
2026-08-17 19:16Z
CRIT

CVE-2026-50774 — GAPTEQ: An issue in GAPTEQ Designer v.3.5 allows a remote attacker to escalate privileges via

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-50774

An issue in GAPTEQ Designer v.3.5 allows a remote attacker to escalate privileges via the Company Manger role. CVSSv3.1 9.8 (CRITICAL)

CWECWE 269VNDGapteqTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-08-17
2026-08-17 18:34Z
INFO

v3.1.0

AzureHound releases·github.com

AzureHound v3.1.0 released with minor bug fixes: normalization of additional identifier casing (BED-9100) and correction of appId uppercasing in AppRoleAssignment.MarshalJSON (BED-9235). No security vulnerabilities or major feature additions in this release.

SRFIdentitySRFCloudSWAzurehoundVNDSpecteropsTYPTool
35
Edit Score
2026-08-17
2026-08-17 18:17Z
HIGH

CVE-2026-62982 — Glances: From 4.5.2 until 4.5.6, _sanitize_mustache_dict() in glances/actions.py skips nested list and dictionary strings such

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-62982

Glances is an open-source system cross-platform monitoring tool. From 4.5.2 until 4.5.6, _sanitize_mustache_dict() in glances/actions.py skips nested list and dictionary strings such as process cmdline values, allowing pipe characters to survive chevron.render() and be executed by secure_popen() through administrator-configured action templates. This issue is fixed in 4.5.6. CVSSv3.1 8.8 (HIGH)

CWECWE 78VNDGlancesTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-08-17
2026-08-17 18:17Z
CRIT

CVE-2026-51346 — SQL: Injection vulnerability in StudIP 6.0.x before 6.0.3 and 5.4.x before 5.4.12 allows a

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-51346

SQL Injection vulnerability in StudIP 6.0.x before 6.0.3 and 5.4.x before 5.4.12 allows a remote attacker to execute arbitrary code and obtain sensitive information via the store() functions. CVSSv3.1 9.1 (CRITICAL)

CWECWE 89TYPVulnerability
9.1
CVSS v3.1
96
Edit Score
2026-08-17
2026-08-17 18:17Z
CRIT

CVE-2026-50772 — Squirro: An issue in Squirro Cognitive Search < 3.14.2 allows a remote attacker to execute

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-50772

An issue in Squirro Cognitive Search < 3.14.2 allows a remote attacker to execute arbitrary code via a crafted payload to the password reset function. CVSSv3.1 9.8 (CRITICAL)

CWECWE 94VNDSquirroTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-08-17
2026-08-17 18:17Z
CRIT

CVE-2026-50770 — Squirro: An issue in Squirro Cognitive Search before v.3.14.2 allows a remote attacker to escalate

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-50770

An issue in Squirro Cognitive Search before v.3.14.2 allows a remote attacker to escalate privileges via a crafted request. CVSSv3.1 9.8 (CRITICAL)

CWECWE 269VNDSquirroTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-08-17
2026-08-17 18:17Z
CRIT

CVE-2026-50769 — The CRM+ application before and including version 2025.6 from Brainformatik is vulnerable to SQL

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-50769

The CRM+ application before and including version 2025.6 from Brainformatik is vulnerable to SQL Injection (time-based) vulnerability. The check conflict endpoint index.php?module=Appointments&action=CheckConflictOfDates&ajaxSkipHeader=true which is used to check any conflicts for user calendar is vulnerable to SQL injection allowing an attacker to execute arbitrary code. CVSSv3.1 9.8 (CRITICAL)

CWECWE 89TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-08-17
2026-08-17 18:17Z
CRIT

CVE-2026-50768 — File: Upload vulnerability in T-Systems International GmbH ImageMaster Version: 9.14.2.8.1 allows a remote attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-50768

File Upload vulnerability in T-Systems International GmbH ImageMaster Version: 9.14.2.8.1 allows a remote attacker to execute arbitrary code via the add attachments feature in the create new document function. CVSSv3.1 9.8 (CRITICAL)

CWECWE 434TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-08-17
2026-08-17 18:16Z
HIGH

CVE-2026-46345 — Prior to versions 3.12.2 and 4.0.3, the `-o/--output` argument in `trestle author jinja` allows

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-46345

compliance-trestle is a tooling platform for managing compliance as code. Prior to versions 3.12.2 and 4.0.3, the `-o/--output` argument in `trestle author jinja` allows writing files outside the intended workspace. The application does not properly validate, `../`, `..\`, or absolute paths. This allows arbitrary file write to attacker-controlled locations. Versions 3.12.3 and 4.0.3 patch the issue. CVSSv3.1 8.4 (HIGH)

CWECWE 22CWECWE 73CWECWE 36TYPVulnerability
8.4
CVSS v3.1
92
Edit Score