2026-07-30
2026-07-30 17:16Z
HIGH

CVE-2026-11885 — IBM: PowerVM Hypervisor FW1110.00 through FW1110.20, FW1060.00 through FW1060.71, and FW950.00 through FW950.H1 A

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-11885

IBM PowerVM Hypervisor FW1110.00 through FW1110.20, FW1060.00 through FW1060.71, and FW950.00 through FW950.H1 A carefully crafted OS hypervisor call can cause the PowerVM hypervisor to crash or compromise OS memory integrity. CVSSv3.1 8.4 (HIGH)

CWECWE 120VNDIbmTYPVulnerability
8.4
CVSS v3.1
92
Edit Score
2026-07-30
2026-07-30 16:17Z
HIGH

CVE-2026-58222 — LDAP: A security flaw combining LDAP filter injection and improper authorization checks was found in

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-58222

A security flaw combining LDAP filter injection and improper authorization checks was found in Samba Active Directory Domain Controller (AD DC). When processing LDAP Compare requests, Samba fails to properly validate user-supplied attribute names and executes the resulting internal database search in a trusted context, bypassing normal Access Control List (ACL) enforcement. An authenticated low-privilege domain user can exploit these flaws to disclose confidential Active Dire CVSSv3.1 8.8 (HIGH)

CWECWE 90VNDLdapTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-07-30
2026-07-30 16:17Z
HIGH

CVE-2026-57862 — Kanboard: 1.2.52 and prior contains a server-side request forgery vulnerability that allows authenticated users

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-57862

Kanboard 1.2.52 and prior contains a server-side request forgery vulnerability that allows authenticated users to bypass SSRF protections by supplying hexadecimal IP address notation in user-controlled URLs. Attackers can submit hexadecimal-encoded internal IP addresses through the web link creation feature, causing cURL to resolve and connect to internal network resources such as cloud instance metadata services, localhost services, and RFC1918 addresses while the isPrivateU CVSSv3.1 8.5 (HIGH)

CWECWE 918VNDKanboardTYPVulnerability
8.5
CVSS v3.1
93
Edit Score
2026-07-30
2026-07-30 16:17Z
CRIT

CVE-2026-52680 — Apache: A remote attacker who can access the REST batch upload endpoint can provide path

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-52680

Apache Kyuubi REST batch multipart upload handling uses the client-supplied multipart filename when creating a temporary uploaded resource. A remote attacker who can access the REST batch upload endpoint can provide path traversal sequences in the filename and cause the Kyuubi server process to write controlled content outside the intended upload directory, subject to filesystem permissions. This issue affects Apache Kyuubi: from 1.7.0 through 1.11.1. Users are recommended CVSSv3.1 9.8 (CRITICAL)

CWECWE 22CWECWE 73VNDApacheTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-07-30
2026-07-30 16:17Z
CRIT

CVE-2026-4978 — Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-4978

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in UMAI Vision Traffic Analysis System allows SQL Injection. This issue affects Traffic Analysis System: from 30 before 34. CVSSv3.1 9.8 (CRITICAL)

CWECWE 89TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-07-30
2026-07-30 16:17Z
HIGH

CVE-2026-28813 — Apache: JSPWiki, up to 2.12.3, is vulnerable to JSON Hijacking, which leads to csrf

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-28813

Apache JSPWiki, up to 2.12.3, is vulnerable to JSON Hijacking, which leads to csrf vulnerabilities. Users are recommended to upgrade to version 2.12.4, which fixes this issue. CVSSv3.1 8.8 (HIGH)

CWECWE 352VNDApacheTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-07-30
2026-07-30 16:17Z
CRIT

CVE-2026-28812 — UserManager: lack of checks allows impersonation in Apache JSPWiki up to 2.12.3 which may

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-28812

UserManager lack of checks allows impersonation in Apache JSPWiki up to 2.12.3 which may allow attackers to escalate privileges. Users are recommended to upgrade to version 2.12.4 or newer which fixes this issue. CVSSv3.1 9.8 (CRITICAL)

CWECWE 290VNDUsermanagerTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
728 × 90 / responsive · programmatic ad slot
2026-07-30
2026-07-30 16:17Z
CRIT

CVE-2026-28323 — SolarWinds: Web Help Desk is found to be affected by a SAML authentication bypass

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-28323

SolarWinds Web Help Desk is found to be affected by a SAML authentication bypass vulnerability. This requires the SAML 2.0 authentication method to be enabled. CVSSv3.1 9.8 (CRITICAL)

CWECWE 287VNDSolarwindsTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-07-30
2026-07-30 16:16Z
HIGH

CVE-2026-15658 — A vulnerability in the foreUP customer REST API allows any authenticated, low-privilege customer to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-15658

A vulnerability in the foreUP customer REST API allows any authenticated, low-privilege customer to access an endpoint that returns the records of other users without checking that the caller owns the data associated with that record. CVSSv3.1 8.1 (HIGH)

CWECWE 639TYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-07-30
2026-07-30 16:11Z
CRIT

KindaRails2Shell: CVE-2026-66066, Critical Arbitrary File Read and Possible Remote Code Execution in Ruby on Rails

Rapid7 Research·rapid7.comCVE-2026-66066

CVE-2026-66066 is a critical vulnerability in Ruby on Rails Active Storage when using libvips for image processing. An unauthenticated attacker can craft malicious image uploads to trigger unsafe libvips operations, enabling arbitrary file read and potential RCE via exposure of application secrets. Rails 7.0–8.1.x are affected; patched versions 7.2.3.2, 8.0.5.1, and 8.1.3.1 disable untrusted operations during initialization, requiring libvips 8.13+ and ruby-vips 2.2.1+.

SRFApplicationTACTA0001TACTA0006SRFWebSWLibvipsSWRailsTYPVulnerabilityTYPAdvisory
92
Edit Score
2026-07-30
2026-07-30 15:16Z
HIGH

CVE-2026-67348 — Julep: contains an insecure direct object reference vulnerability in the get_execution_details endpoint that allows

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-67348

Julep contains an insecure direct object reference vulnerability in the get_execution_details endpoint that allows authenticated tenants to read another tenant's execution data. Attackers can supply arbitrary execution_id values to retrieve sensitive execution records including task inputs, outputs, metadata, and temporal task tokens from other tenants. CVSSv3.1 8.1 (HIGH)

CWECWE 639VNDJulepTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-07-30
2026-07-30 15:16Z
HIGH

CVE-2026-67346 — Swarms: through 6.8.1, fixed in commit 8b0fc9e, contains a server-side request forgery vulnerability in

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-67346

Swarms through 6.8.1, fixed in commit 8b0fc9e, contains a server-side request forgery vulnerability in the _is_safe_url function that fails to validate hostnames through DNS resolution, allowing attackers to bypass the blocklist. Attackers can supply user-controlled image or audio URLs that resolve to private, loopback, or metadata addresses to reach internal services and exfiltrate credentials. CVSSv3.1 8.6 (HIGH)

CWECWE 918VNDSwarmsTYPVulnerability
8.6
CVSS v3.1
93
Edit Score
2026-07-30
2026-07-30 15:16Z
HIGH

CVE-2026-67345 — MaxKey: through 4.1.12, fixed in commit ddbb72f, contains an insufficient redirect URI validation vulnerability

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-67345

MaxKey through 4.1.12, fixed in commit ddbb72f, contains an insufficient redirect URI validation vulnerability in DefaultRedirectResolver.hostMatches() that allows remote attackers to hijack OAuth 2.0 authorization codes by supplying a crafted redirect_uri whose hostname suffix matches a registered URI without proper dot-boundary anchoring. Attackers who control a domain ending with the registered redirect URI hostname can social-engineer victims into clicking a crafted autho CVSSv3.1 8.1 (HIGH)

CWECWE 183VNDMaxkeyTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-07-30
2026-07-30 15:16Z
CRIT

CVE-2026-15435 — IBM: App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 could allow a

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-15435

IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot dot" sequences (/../) to write arbitrary files on the system. CVSSv3.1 9.8 (CRITICAL)

CWECWE 22VNDIbmTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-07-30
2026-07-30 15:16Z
HIGH

CVE-2026-14980 — IBM: WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 is vulnerable to cross-site request

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-14980

IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.8 is vulnerable to cross-site request forgery which could allow an attacker to perform SSRF attacks with elevated privileges when the collectiveController-1.0 feature is enabled. CVSSv3.1 8.3 (HIGH)

CWECWE 269VNDIbmTYPVulnerability
8.3
CVSS v3.1
92
Edit Score
2026-07-30
2026-07-30 15:16Z
HIGH

CVE-2026-14522 — IBM: App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 could allow a

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-14522

IBM App Connect Enterprise 13.0.1.0 through 13.0.7.2, and 12.0.1.0 through 12.0.12.27 could allow a remote attacker to execute arbitrary commands due to improper neutralization of CRLF characters. CVSSv3.1 8.8 (HIGH)

CWECWE 78VNDIbmTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-07-30
2026-07-30 15:16Z
CRIT

CVE-2026-11707 — IBM: Tivoli System Automation Application Manager 4.1 and IBM WebSphere Application Server is affected

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-11707

IBM Tivoli System Automation Application Manager 4.1 and IBM WebSphere Application Server is affected by a cross-site scripting vulnerability in the administrative console login page. CVSSv3.1 9.3 (CRITICAL)

CWECWE 79VNDIbmTYPVulnerability
9.3
CVSS v3.1
97
Edit Score
2026-07-30
2026-07-30 14:29Z
INFO

Metasploit Framework 6.5 Released

Rapid7 Research·rapid7.com

Metasploit Framework 6.5 released with 422 new modules and significant feature additions including Malleable C2 HTTP profile support across all Meterpreter payloads, a new MCP Server for AI-driven integration, expanded NTLM relay capabilities (HTTP-to-SMB/LDAP), the NTLMRelay2Self exploitation module, and enhanced Fetch payload functionality (fileless execution, pipe stagers, multi-architecture support).

SRFApplicationTACTA0002TACTA0011SWMetasploitVNDRapid7TYPToolSTGPrivescSTGExecution
72
Edit Score
2026-07-30
2026-07-30 14:17Z
HIGH

CVE-2026-67351 — Serendipity: before 2.6.1 contains an authentication context confusion vulnerability where password validation and session

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-67351

Serendipity before 2.6.1 contains an authentication context confusion vulnerability where password validation and session loading operate independently without ensuring both use the same user record. An authenticated Editor can create a username collision with an Administrator account and obtain administrative privileges by logging in with their own password while the session loads the Administrator's account data. CVSSv3.1 8.8 (HIGH)

CWECWE 304VNDSerendipityTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-07-30
2026-07-30 14:17Z
HIGH

CVE-2026-5219 — Site: Cross-Site request forgery (CSRF) vulnerability in Softtr Information Technology Trade Ltd.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-5219

Cross-Site request forgery (CSRF) vulnerability in Softtr Information Technology Trade Ltd. Co. E-Commerce Pack allows Cross Site Request Forgery. This issue affects E-Commerce Pack: through 30072026. NOTE: The vendor was contacted early about this disclosure but did not respond in any way. CVSSv3.1 8.3 (HIGH)

CWECWE 352TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
2026-07-30
2026-07-30 14:16Z
HIGH

CVE-2026-56428 — SSH: The SSH service on BSH ELP (Electronic Platform) modules contains a platform-specific vulnerability due

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-56428

The SSH service on BSH ELP (Electronic Platform) modules contains a platform-specific vulnerability due to an improperly secured default configuration. An insecure, non-revocable SSH public key is included in the firmware's authorized_keys file for the root user. An attacker in possession of the corresponding private key could leverage it to bypass authentication and gain root-level access to the appliance. CVSSv3.1 8.1 (HIGH)

CWECWE 286VNDSshTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-07-30
2026-07-30 14:16Z
HIGH

CVE-2026-12722 — Missing authentication for critical function vulnerability in FTC Software IT Services FTC E-Commerce Management

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-12722

Missing authentication for critical function vulnerability in FTC Software IT Services FTC E-Commerce Management Panel allows Authentication Bypass. This issue affects FTC E-Commerce Management Panel: before 1.0.2. CVSSv3.1 8.2 (HIGH)

CWECWE 306TYPVulnerability
8.2
CVSS v3.1
91
Edit Score
2026-07-30
2026-07-30 14:00Z
CRIT

The July 2026 Apple Security Update Review

Apple released 210 CVEs in July 2026 across iOS, macOS, tvOS, watchOS, and visionOS—a 5.7x jump from June's 37 CVEs. Critical vulnerabilities include CVE-2026-43818 (ImageIO RCE via malicious images, auto-parsed in Messages), CVE-2026-64747 (AVEVideoEncoder kernel code execution affecting all platforms), and CVE-2026-64767 (unauthenticated network-reachable kernel memory corruption via AFP). The release includes 9 code-execution bugs, 26 privilege-escalation flaws, 11 sandbox escapes, and 75 denial-of-service issues.

SRFApplicationSRFOsOSMacosOSIosOSIpadosOSTvosOSWatchosVNDApple
82
Edit Score
2026-07-30
2026-07-30 13:16Z
CRIT

CVE-2026-59310 — VMware: vCenter contains a directory traversal vulnerability in the Syslog server.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-59310

VMware vCenter contains a directory traversal vulnerability in the Syslog server. A malicious actor with network access to vCenter may exploit this issue to execute arbitrary code. CVSSv3.1 9.8 (CRITICAL)

CWECWE 22VNDVmwareTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-07-30
2026-07-30 13:16Z
CRIT

CVE-2026-59309 — VMware: vCenter contains an authentication bypass vulnerability in the VMware Directory Service.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-59309

VMware vCenter contains an authentication bypass vulnerability in the VMware Directory Service. A malicious actor with network access to vCenter may exploit this issue to bypass authentication and gain unauthorized access to the system. CVSSv3.1 9.8 (CRITICAL)

CWECWE 303VNDVmwareTYPVulnerability
9.8
CVSS v3.1
99
Edit Score