2026-08-12
2026-08-12 18:17Z
HIGH

CVE-2026-44741 — Admin: Versions prior to 2.3.6 and 1.7.18 have a SQL injection vulnerability in Pimcore's translation

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-44741

Pimcore's Admin Classic Bundle provides a Backend UI for Pimcore. Versions prior to 2.3.6 and 1.7.18 have a SQL injection vulnerability in Pimcore's translation grid date filter — the user-supplied `property` field from the filter JSON is interpolated directly into a `UNIX_TIMESTAMP(DATE(FROM_UNIXTIME(...)))` SQL expression without parameterization or allowlist validation. Versiosn 2.3.6 and 1.7.18 fix the issue. CVSSv3.1 8.8 (HIGH)

CWECWE 89TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-08-12
2026-08-12 18:17Z
HIGH

CVE-2026-18713 — IBM: i 7.6, 7.5, 7.4, and 7.3 s vulnerable to privilege escalation via Navigator

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-18713

IBM i 7.6, 7.5, 7.4, and 7.3 s vulnerable to privilege escalation via Navigator for i. An authenticated user could elevate privileges to a root user to execute commands. CVSSv3.1 8.8 (HIGH)

CWECWE 269VNDIbmTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-08-12
2026-08-12 18:17Z
HIGH

CVE-2026-18669 — IBM: i 7.6, 7.5, 7.4, and 7.3 is vulnerable to a privilege escalation as

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-18669

IBM i 7.6, 7.5, 7.4, and 7.3 is vulnerable to a privilege escalation as the result of a remote code execution vulnerability in the activation engine component. An authenticated attacker can execute a maliciously planted script with root authority. CVSSv3.1 8.8 (HIGH)

CWECWE 250VNDIbmTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-08-12
2026-08-12 18:17Z
HIGH

CVE-2026-18235 — IBM: i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-18235

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary Control Language commands due to insufficient input validation. CVSSv3.1 8.3 (HIGH)

CWECWE 78VNDIbmTYPVulnerability
8.3
CVSS v3.1
92
Edit Score
2026-08-12
2026-08-12 18:17Z
HIGH

CVE-2026-17418 — IBM: i 7.6, 7.5, 7.4, and 7.3 could allow a local authenticated attacker to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-17418

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local authenticated attacker to cause a denial of service due to improper neutralization of special elements used in an SQL command. CVSSv3.1 8.5 (HIGH)

CWECWE 89VNDIbmTYPVulnerability
8.5
CVSS v3.1
93
Edit Score
2026-08-12
2026-08-12 18:17Z
CRIT

CVE-2026-17276 — IBM: i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-17276

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to escalate privileges due to improper authorization in the handling of high-authority threads. CVSSv3.1 9.6 (CRITICAL)

CWECWE 269VNDIbmTYPVulnerability
9.6
CVSS v3.1
98
Edit Score
2026-08-12
2026-08-12 18:17Z
CRIT

CVE-2026-17218 — IBM: i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to execute

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-17218

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to execute arbitrary code due to an out-of-bounds write. CVSSv3.1 9.8 (CRITICAL)

CWECWE 787VNDIbmTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
728 × 90 / responsive · programmatic ad slot
2026-08-12
2026-08-12 18:17Z
HIGH

CVE-2026-17110 — IBM: i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-17110

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary commands and obtain sensitive information due to improper privilege management. CVSSv3.1 8.8 (HIGH)

CWECWE 250VNDIbmTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-08-12
2026-08-12 18:17Z
CRIT

CVE-2026-16956 — IBM: Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-16956

IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command. CVSSv3.1 9.8 (CRITICAL)

CWECWE 78VNDIbmTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-08-12
2026-08-12 18:17Z
HIGH

CVE-2026-16906 — IBM: i 7.6, and 7.5 could allow a remote authenticated attacker to execute arbitrary

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-16906

IBM i 7.6, and 7.5 could allow a remote authenticated attacker to execute arbitrary commands with elevated privileges due to improper neutralization of special elements used in an OS command. CVSSv3.1 8.8 (HIGH)

CWECWE 78VNDIbmTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-08-12
2026-08-12 18:17Z
HIGH

CVE-2026-16904 — IBM: i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-16904

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary commands due to improper privilege management during monitor owner reassignment. CVSSv3.1 8.1 (HIGH)

CWECWE 269VNDIbmTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-08-12
2026-08-12 18:17Z
CRIT

CVE-2026-16860 — IBM: i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-16860

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary code due to an uncontrolled search path element. CVSSv3.1 9.9 (CRITICAL)

CWECWE 427VNDIbmTYPVulnerability
9.9
CVSS v3.1
100
Edit Score
2026-08-12
2026-08-12 18:17Z
HIGH

CVE-2026-16856 — IBM: i 7.6, and 7.5 could allow a local attacker to gain elevated privileges

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-16856

IBM i 7.6, and 7.5 could allow a local attacker to gain elevated privileges due to improper neutralization of special elements used in an OS command. CVSSv3.1 8.8 (HIGH)

CWECWE 78VNDIbmTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-08-12
2026-08-12 18:17Z
HIGH

CVE-2026-15423 — GitLab: has remediated an issue in GitLab CE/EE affecting all versions from 19.0 before

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-15423

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.0 before 19.0.6, 19.1 before 19.1.4, and 19.2 before 19.2.2 that under certain conditions could have allowed an authenticated user with developer-role permissions to execute CI/CD pipelines on a protected branch without the required push permissions due to improper authorization in pipeline reference validation. CVSSv3.1 8.5 (HIGH)

CWECWE 863VNDGitlabTYPVulnerability
8.5
CVSS v3.1
93
Edit Score
2026-08-12
2026-08-12 17:18Z
HIGH

From Patch Tuesday to Pentest Wednesday®: How a Major Transportation Company Turned AWS Attack Paths Into Action

Horizon3.ai·horizon3.ai

Horizon3.ai documents a major U.S. transportation company's repeated AWS pentesting program using NodeZero, identifying IAM weaknesses that chain into privilege escalation and full account compromise paths. The engagement demonstrated 25 exploitable attack paths across 4 core AWS IAM misconfigurations (CreateAccessKey, UpdateLoginProfile, UpdateAssumeRolePolicy), with 102 weaknesses ultimately remediated through iterative validation cycles.

TACTA0004TACTA0007SRFIdentitySRFCloudVNDAmazonTYPResearchTYPWriteupSTGDiscovery
72
Edit Score
2026-08-12
2026-08-12 17:17Z
CRIT

CVE-2026-73296 — Microsoft: UFO open-source framework for intelligent automation across devices and platforms.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-73296

Microsoft UFO open-source framework for intelligent automation across devices and platforms. Prior to 3.0.8, create_mobile_data_collection_server and create_mobile_action_server in ufo/client/mcp/http_servers/mobile_mcp_server.py exposed Streamable HTTP MCP services on TCP ports 8020 and 8021 without authentication, allowing an unauthenticated remote attacker to invoke capture_screenshot, get_ui_tree, tap, swipe, type_text, launch_app, press_key, and click_control against an CVSSv3.1 9.4 (CRITICAL)

CWECWE 862CWECWE 306VNDMicrosoftTYPVulnerability
9.4
CVSS v3.1
97
Edit Score
2026-08-12
2026-08-12 17:17Z
CRIT

CVE-2026-73240 — Specifically: crafted inputs may lead to git argument injection in Apache Allura.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-73240

Specifically crafted inputs may lead to git argument injection in Apache Allura. This issue affects Apache Allura: before 1.19.1. Users are recommended to upgrade to version 1.19.1, which fixes the issue. CVSSv3.1 9.8 (CRITICAL)

CWECWE 88VNDSpecificallyTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-08-12
2026-08-12 17:17Z
HIGH

CVE-2026-18847 — IBM: i 7.6, 7.5, 7.4, and 7.3 could allow a remote unauthenticated attacker to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-18847

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote unauthenticated attacker to harvest credentials due to spoofing of Navigator for i. CVSSv3.1 8.8 (HIGH)

CWECWE 346VNDIbmTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-08-12
2026-08-12 17:17Z
HIGH

CVE-2026-18683 — IBM: i 7.6, 7.5, 7.4, and 7.3 is vulnerable to privilege escalation via Navigator

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-18683

IBM i 7.6, 7.5, 7.4, and 7.3 is vulnerable to privilege escalation via Navigator for i. An authenticated user could elevate privileges to a root user to execute commands. CVSSv3.1 8.8 (HIGH)

CWECWE 78VNDIbmTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-08-12
2026-08-12 17:17Z
HIGH

CVE-2026-18499 — IBM: WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 is vulnerable to a privilege

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-18499

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 is vulnerable to a privilege escalation when using Liberty collectives. CVSSv3.1 8.1 (HIGH)

CWECWE 285VNDIbmTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-08-12
2026-08-12 17:17Z
HIGH

CVE-2026-18098 — IBM: i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-18098

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information and compromise system integrity due to an XML injection flaw. CVSSv3.1 8.1 (HIGH)

CWECWE 346VNDIbmTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-08-12
2026-08-12 17:17Z
HIGH

CVE-2026-17095 — IBM: i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-17095

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrictions due to unsafe reflection. CVSSv3.1 8.3 (HIGH)

CWECWE 915VNDIbmTYPVulnerability
8.3
CVSS v3.1
92
Edit Score
2026-08-12
2026-08-12 16:17Z
CRIT

CVE-2026-73294 — Semaphore: Prior to 2.18.17 and 2.19.5-beta2, repository git_url handling passes an attacker-controlled --upload-pack option to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-73294

Semaphore UI is a web interface for managing DevOps tools. Prior to 2.18.17 and 2.19.5-beta2, repository git_url handling passes an attacker-controlled --upload-pack option to CmdGitClient.GetLastRemoteCommitHash through POST /api/project/{id}/repositories and scheduled commit-hash polling, allowing a project Manager or Owner to execute arbitrary OS commands in the Semaphore server process. This issue is fixed in versions 2.18.17 and 2.19.5-beta2. CVSSv3.1 9.9 (CRITICAL)

CWECWE 78CWECWE 88VNDSemaphoreTYPVulnerability
9.9
CVSS v3.1
100
Edit Score
2026-08-12
2026-08-12 16:17Z
HIGH

CVE-2026-73293 — Semaphore: Prior to 2.18.19 and from 2.19.0-alpha3 until 2.19.5-beta5, ProjectMiddleware and GetProjectOrGlobalRoleBySlug allow a project

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-73293

Semaphore UI is a web interface for managing DevOps tools. Prior to 2.18.19 and from 2.19.0-alpha3 until 2.19.5-beta5, ProjectMiddleware and GetProjectOrGlobalRoleBySlug allow a project manager to use POST /api/project/{id}/roles to create a custom manager role with permission bitmask 15, overriding the built-in manager permissions and granting CanUpdateProject and CanManageProjectUsers owner capabilities. This issue is fixed in versions 2.18.19 and 2.19.5-beta5. CVSSv3.1 8.8 (HIGH)

CWECWE 269VNDSemaphoreTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-08-12
2026-08-12 16:17Z
HIGH

CVE-2026-73292 — Semaphore: Prior to 2.18.21, the /api/users/{id}/password endpoint accepts a cross-site request using the authenticated user's

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-73292

Semaphore UI is a web interface for managing DevOps tools. Prior to 2.18.21, the /api/users/{id}/password endpoint accepts a cross-site request using the authenticated user's semaphore session cookie without CSRF protection or current-password confirmation, allowing an unauthenticated attacker to change an administrator's or another user's password after user interaction. This issue is fixed in version 2.18.21. CVSSv3.1 8.3 (HIGH)

CWECWE 352CWECWE 620VNDSemaphoreTYPVulnerability
8.3
CVSS v3.1
92
Edit Score