1w ago
2026-07-24 01:17Z
CRIT

CVE-2026-62825 — Azure: Improper authentication in Azure Key Vault allows an unauthorized attacker to elevate privileges over

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-62825

Improper authentication in Azure Key Vault allows an unauthorized attacker to elevate privileges over a network. CVSSv3.1 10.0 (CRITICAL)

CWECWE 287VNDAzureTYPVulnerability
10.0
CVSS v3.1
100
Edit Score
1w ago
2026-07-24 01:17Z
CRIT

CVE-2026-58275 — Azure: Missing authorization in Azure DNS allows an unauthorized attacker to elevate privileges over a

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-58275

Missing authorization in Azure DNS allows an unauthorized attacker to elevate privileges over a network. CVSSv3.1 10.0 (CRITICAL)

CWECWE 862VNDAzureTYPVulnerability
10.0
CVSS v3.1
100
Edit Score
1w ago
2026-07-24 01:17Z
CRIT

CVE-2026-56191 — Microsoft: Improper authentication in Microsoft Exchange Online allows an unauthorized attacker to perform tampering over

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-56191

Improper authentication in Microsoft Exchange Online allows an unauthorized attacker to perform tampering over a network. CVSSv3.1 10.0 (CRITICAL)

CWECWE 287VNDMicrosoftTYPVulnerability
10.0
CVSS v3.1
100
Edit Score
1w ago
2026-07-24 01:17Z
HIGH

CVE-2026-56167 — Server: Server-side request forgery (ssrf) in Azure AI Search allows an authorized attacker to elevate

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-56167

Server-side request forgery (ssrf) in Azure AI Search allows an authorized attacker to elevate privileges over a network. CVSSv3.1 8.5 (HIGH)

CWECWE 918TYPVulnerability
8.5
CVSS v3.1
93
Edit Score
1w ago
2026-07-24 01:17Z
CRIT

CVE-2026-56165 — Heap: Heap-based buffer overflow in Microsoft Account allows an unauthorized attacker to execute code over

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-56165

Heap-based buffer overflow in Microsoft Account allows an unauthorized attacker to execute code over a network. CVSSv3.1 9.8 (CRITICAL)

CWECWE 122VNDHeapTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
1w ago
2026-07-24 01:17Z
CRIT

CVE-2026-56160 — Azure: Improper authorization in Azure Red Hat OpenShift (ARO) allows an authorized attacker to elevate

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-56160

Improper authorization in Azure Red Hat OpenShift (ARO) allows an authorized attacker to elevate privileges over a network. CVSSv3.1 9.1 (CRITICAL)

CWECWE 285VNDAzureTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
1w ago
2026-07-24 01:17Z
CRIT

CVE-2026-54120 — Microsoft: Improper input validation in Microsoft Surface allows an authorized attacker to execute code over

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-54120

Improper input validation in Microsoft Surface allows an authorized attacker to execute code over a network. CVSSv3.1 9.9 (CRITICAL)

CWECWE 20VNDMicrosoftTYPVulnerability
9.9
CVSS v3.1
100
Edit Score
728 × 90 / responsive · programmatic ad slot
1w ago
2026-07-24 01:17Z
CRIT

CVE-2026-50517 — Deserialization: of untrusted data in M365 Copilot allows an authorized attacker to execute code

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-50517

Deserialization of untrusted data in M365 Copilot allows an authorized attacker to execute code over a network. CVSSv3.1 9.9 (CRITICAL)

CWECWE 502TYPVulnerability
9.9
CVSS v3.1
100
Edit Score
1w ago
2026-07-24 01:16Z
HIGH

CVE-2026-35425 — Azure: Improper access control in Azure API Management (APIM) allows an authorized attacker to execute

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-35425

Improper access control in Azure API Management (APIM) allows an authorized attacker to execute code over a network. CVSSv3.1 8.0 (HIGH)

CWECWE 284VNDAzureTYPVulnerability
8.0
CVSS v3.1
90
Edit Score
1w ago
2026-07-24 00:00Z
CRIT

The Signs Were There: What the First Autonomous Ransomware Case Confirms

Trend Micro Research·trendmicro.comCVE-2025-3248CVE-2021-29441in the wild

Trend Micro documents JADEPUFFER, the first autonomous ransomware operation where an LLM agent executed a complete intrusion chain—from initial access via unpatched Langflow RCE (CVE-2025-3248) through credential harvesting, privilege escalation via Nacos auth bypass (CVE-2021-29441), persistence, and database encryption—without human operator intervention. The agent adapted in real-time to obstacles, rewrote its own code on failure, and generated 600+ distinct payloads, though the monetization layer failed due to unsaved encryption keys and a placeholder ransom address. The attack shifts defensive burden from indicator-based detection to behavior-based monitoring, as agent-run attacks produce disposable per-victim indicators and improvised infrastructure.

SRFApplicationTACTA0004TACTA0005TACTA0001TACTA0003SRFCloudTACTA0011SWLangflow
92
Edit Score
1w ago
2026-07-23 23:16Z
CRIT

CVE-2026-42933 — Pronetiqs: IntraVUE versions 3.2.1a14 and prior have an unintended proxy or intermediary vulnerability which

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-42933

Pronetiqs IntraVUE versions 3.2.1a14 and prior have an unintended proxy or intermediary vulnerability which could allow an attacker to use an active proxy, which would bypass OT segmentation. CVSSv3.1 10.0 (CRITICAL)

CWECWE 441VNDPronetiqsTYPVulnerability
10.0
CVSS v3.1
100
Edit Score
1w ago
2026-07-23 23:16Z
HIGH

CVE-2026-28698 — Pronetiqs: IntraVUE versions 3.2.1a14 and prior have an exposure of sensitive system information to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-28698

Pronetiqs IntraVUE versions 3.2.1a14 and prior have an exposure of sensitive system information to an unauthorized control sphere vulnerability which could expose the underlying host/share filesystem. CVSSv3.1 8.6 (HIGH)

CWECWE 497VNDPronetiqsTYPVulnerability
8.6
CVSS v3.1
93
Edit Score
1w ago
2026-07-23 22:16Z
HIGH

CVE-2026-65604 — Skipper: contains an incomplete fix for CVE-2026-50197 in which oversized request bodies bypass Open

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-65604

Skipper contains an incomplete fix for CVE-2026-50197 in which oversized request bodies bypass Open Policy Agent (OPA) deny-on-presence Rego policies. When a request body exceeds the configured maxBodyBytes limit, Skipper forwards the full payload to the upstream service while OPA evaluates against an empty parsed_body, so policies that deny requests based on body content are not enforced and forbidden actions proceed. No fixed version is available; v0.27.26 adds documentatio CVSSv3.1 8.2 (HIGH)

CWECWE 20VNDSkipperTYPVulnerability
8.2
CVSS v3.1
91
Edit Score
1w ago
2026-07-23 22:16Z
CRIT

CVE-2026-63732 — 9router 0.4.59 (fixed in 0.4.60) contains a chain of vulnerabilities: a hardcoded default password

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-63732

9router 0.4.59 (fixed in 0.4.60) contains a chain of vulnerabilities: a hardcoded default password (123456) that authenticates any fresh installation, a bypass of the LOCAL_ONLY network gate via a spoofed Host header, and unvalidated arguments passed to child_process.spawn() when registering MCP plugins. A remote, unauthenticated attacker can log in with the default credential, spoof the Host header to reach local-only routes, and register a malicious MCP plugin (e.g. node -e CVSSv3.1 9.9 (CRITICAL)

CWECWE 78TYPVulnerability
9.9
CVSS v3.1
100
Edit Score
1w ago
2026-07-23 22:16Z
HIGH

CVE-2026-16807 — Out: of bounds write in Codecs in Google Chrome prior to 150.0.7871.186 allowed a

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-16807

Out of bounds write in Codecs in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.8 (HIGH)

CWECWE 787TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
1w ago
2026-07-23 22:16Z
HIGH

CVE-2026-16806 — Use: after free in WebMCP in Google Chrome prior to 150.0.7871.186 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-16806

Use after free in WebMCP in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.8 (HIGH)

CWECWE 416TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
1w ago
2026-07-23 22:16Z
HIGH

CVE-2026-16805 — Use: after free in Blink in Google Chrome prior to 150.0.7871.186 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-16805

Use after free in Blink in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.8 (HIGH)

CWECWE 416TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
1w ago
2026-07-23 22:16Z
HIGH

CVE-2026-16804 — Use: after free in Input in Google Chrome prior to 150.0.7871.186 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-16804

Use after free in Input in Google Chrome prior to 150.0.7871.186 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.3 (HIGH)

CWECWE 416TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
1w ago
2026-07-23 22:16Z
CRIT

CVE-2025-71389 — Cal: Cal.com (calcom/cal.diy) before 5.9.9 is vulnerable to unauthenticated remote code execution because it bundles

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2025-71389

Cal.com (calcom/cal.diy) before 5.9.9 is vulnerable to unauthenticated remote code execution because it bundles a version of Next.js whose React Server Components (RSC) request handling deserializes attacker-controlled input. A remote attacker can send a crafted RSC request to the server and cause arbitrary code to be executed during server-side processing, without authentication or user interaction. The flaw derives from the upstream Next.js vulnerability CVE-2025-55182 and CVSSv3.1 10.0 (CRITICAL)

CWECWE 94VNDCalTYPVulnerability
10.0
CVSS v3.1
100
Edit Score
1w ago
2026-07-23 22:16Z
HIGH

CVE-2024-58355 — Cal: Cal.com (calcom/cal.diy) versions through 4.7.15 contain a stored cross-site scripting vulnerability.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2024-58355

Cal.com (calcom/cal.diy) versions through 4.7.15 contain a stored cross-site scripting vulnerability. The single booking view (e.g., https://app.cal.com/booking/<id>) renders booking-question field labels via React's dangerouslySetInnerHTML without sanitizing or escaping user input. An attacker who can create an event type with a malicious booking-question label can inject arbitrary HTML/JavaScript that executes when a victim opens the crafted booking URL. The issue is fixed CVSSv3.1 8.9 (HIGH)

CWECWE 80VNDCalTYPVulnerability
8.9
CVSS v3.1
95
Edit Score
1w ago
2026-07-23 22:16Z
CRIT

CVE-2024-58354 — cal.com (calcom repository, later renamed cal.diy) is affected by a repository takeover vulnerability in

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2024-58354

cal.com (calcom repository, later renamed cal.diy) is affected by a repository takeover vulnerability in its GitHub Actions workflows. The workflow pr.yml uses the pull_request_target trigger with the repository's default write permissions and passes them down to check-types.yml. check-types.yml then performs a 'dangerous' checkout of the attacker-submitted pull request code (via the dangerous-git-checkout action) and subsequently executes it (through yarn install and package CVSSv3.1 9.9 (CRITICAL)

CWECWE 77TYPVulnerability
9.9
CVSS v3.1
100
Edit Score
1w ago
2026-07-23 22:16Z
HIGH

CVE-2024-58353 — Cal: Cal.com (repository calcom/cal.diy) in versions <= 4.7.15 is vulnerable to cross-site scripting (XSS) on

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2024-58353

Cal.com (repository calcom/cal.diy) in versions <= 4.7.15 is vulnerable to cross-site scripting (XSS) on the publicly accessible single booking view (e.g., /booking/<id>). Booking question (form field) labels are rendered via React's dangerouslySetInnerHTML without proper input sanitization or CSP, so an attacker who can create an event type with a malicious booking question label can inject arbitrary HTML/JavaScript that executes when a victim visits the booking view URL. Se CVSSv3.1 8.9 (HIGH)

CWECWE 80VNDCalTYPVulnerability
8.9
CVSS v3.1
95
Edit Score
1w ago
2026-07-23 21:17Z
CRIT

CVE-2026-52439 — An issue in xiandafu beetl 3.20.2 allows a remote attacker to execute arbitrary code

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-52439

An issue in xiandafu beetl 3.20.2 allows a remote attacker to execute arbitrary code via the type.new function and the property reflection mechanism CVSSv3.1 9.8 (CRITICAL)

CWECWE 917TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
1w ago
2026-07-23 21:17Z
HIGH

CVE-2026-49035 — The affected product is vulnerable to a heap-based buffer overflow via a crafted MMS

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-49035

The affected product is vulnerable to a heap-based buffer overflow via a crafted MMS Initiate request. Remote code execution (RCE) has been demonstrated when ASLR is disabled; memory corruption or denial of service may occur in configurations where ASLR is enabled. CVSSv3.1 8.1 (HIGH)

CWECWE 122TYPVulnerability
8.1
CVSS v3.1
91
Edit Score
1w ago
2026-07-23 21:17Z
CRIT

CVE-2026-47724 — Combined with the per-operator CA model from ADR 0002, this gives any non-admin operator

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-47724

nebula-mesh is a self-hosted control plane for Slack Nebula mesh virtual private network. Prior to version 0.3.4, the `/api/v1/*` route surface trusts the bearer token alone for authorisation on most endpoints. The codebase itself admits this at `internal/api/hosts.go:384`: "API trusts the bearer token for authorisation; per-CA ownership is enforced only in the Web layer." The Web UI gates state-changing routes through `loadAccessibleCA` (`internal/web/cas.go`); CA-management CVSSv3.1 9.9 (CRITICAL)

CWECWE 862TYPVulnerability
9.9
CVSS v3.1
100
Edit Score