1w ago
2026-09-04 20:17Z
HIGH

CVE-2026-53932 — Prior to version 1.9.4, a crafted backup archive can trigger OS command injection during

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-53932

laravel-backup-restore restores database backups made with spatie/laravel-backup. Prior to version 1.9.4, a crafted backup archive can trigger OS command injection during database restore. This issue has been patched in version 1.9.4. CVSSv3.1 8.0 (HIGH)

CWECWE 77CWECWE 78TYPVulnerability
8.0
CVSS v3.1
90
Edit Score
1w ago
2026-09-04 19:17Z
HIGH

CVE-2026-85781 — Unverified: ownership of a storage access point in the volume deletion component of the

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-85781

Unverified ownership of a storage access point in the volume deletion component of the Amazon EFS CSI Driver before v3.4.1 might allow an authenticated Kubernetes user with PersistentVolume creation privileges to cause recursive deletion of directories on an EFS filesystem they are not authorized to access, via a crafted PersistentVolume volumeHandle that pairs an access point from one filesystem with a different target filesystem. To remediate this issue, users should upg CVSSv3.1 8.7 (HIGH)

CWECWE 283VNDUnverifiedTYPVulnerability
8.7
CVSS v3.1
94
Edit Score
1w ago
2026-09-04 19:17Z
CRIT

CVE-2026-81939 — Zip: A Zip Slip vulnerability in the SonicWall Network Security Manager (NSM) On-Prem file upload

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-81939

A Zip Slip vulnerability in the SonicWall Network Security Manager (NSM) On-Prem file upload and archive processing functionality allows an attacker to extract files outside the intended destination directory using a specially crafted archive. CVSSv3.1 9.1 (CRITICAL)

CWECWE 22VNDZipTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
1w ago
2026-09-04 19:17Z
HIGH

CVE-2026-78839 — An arbitrary file upload vulnerability in AppNitro MachForm v30 allows attackers to execute arbitrary

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78839

An arbitrary file upload vulnerability in AppNitro MachForm v30 allows attackers to execute arbitrary code via uploading a crafted .phar file. CVSSv3.1 8.1 (HIGH) · EPSS 17th percentile

CWECWE 434TYPVulnerability
8.1
CVSS v3.1
91
Edit Score
1w ago
2026-09-04 19:17Z
CRIT

CVE-2026-78328 — A missing authorization vulnerability in the SonicWall Network Security Manager (NSM) On-Prem Management interface

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78328

A missing authorization vulnerability in the SonicWall Network Security Manager (NSM) On-Prem Management interface allows a lower-privileged Admin user to escalate privileges to SuperAdmin. CVSSv3.1 9.1 (CRITICAL)

CWECWE 862TYPVulnerability
9.1
CVSS v3.1
96
Edit Score
1w ago
2026-09-04 19:17Z
CRIT

CVE-2026-78327 — Neutralization: An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78327

An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in the SonicWall Network Security Manager (NSM) On-Prem Management interface allows an authenticated attacker with SuperAdmin privileges to inject arbitrary commands that are executed on the underlying host, resulting in remote code execution. CVSSv3.1 9.1 (CRITICAL)

CWECWE 78TYPVulnerability
9.1
CVSS v3.1
96
Edit Score
1w ago
2026-09-04 19:17Z
HIGH

CVE-2026-71620 — File: Upload vulnerability in Zhao-github ApiAdmin v.5.0.1 allows a remote attacker to execute arbitrary

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-71620

File Upload vulnerability in Zhao-github ApiAdmin v.5.0.1 allows a remote attacker to execute arbitrary code via a crafted .php file CVSSv3.1 8.1 (HIGH) · EPSS 11th percentile

CWECWE 434TYPVulnerability
8.1
CVSS v3.1
91
Edit Score
728 × 90 / responsive · programmatic ad slot
1w ago
2026-09-04 18:18Z
HIGH

CVE-2026-9317 — Nango: before 0.71.6 contains a missing authentication vulnerability in the runner tRPC server that

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-9317

Nango before 0.71.6 contains a missing authentication vulnerability in the runner tRPC server that allows unauthenticated attackers to execute arbitrary JavaScript code by invoking the exposed start procedure without credentials. Attackers with network access to the runner port can send requests to the unauthenticated start procedure, bypassing the unenforced RUNNER_SECRET_KEY environment variable, to achieve remote code execution within the runner process. CVSSv3.1 8.1 (HIGH)

CWECWE 306VNDNangoTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
1w ago
2026-09-04 18:18Z
HIGH

CVE-2026-82538 — ILIAS: before versions 9.22, 10.10, and 11.3 contains a SQL injection vulnerability in the

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-82538

ILIAS before versions 9.22, 10.10, and 11.3 contains a SQL injection vulnerability in the repository trash table where the table navigation sort field from HTTP requests is passed directly into the ORDER BY clause of a SQL query without validation against declared sortable columns. Authenticated users with write permission on any container can inject arbitrary SQL through the sort parameter, and because multi-statement execution is enabled in the database layer, stacked queri CVSSv3.1 8.8 (HIGH)

CWECWE 89VNDIliasTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
1w ago
2026-09-04 18:17Z
CRIT

CVE-2026-57163 — Teluu Pjsip: Prior to commit c4a151a, a stack buffer overflow exists in the GnuTLS TLS backend

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-57163

PJSIP is a free and open source multimedia communication library written in C. Prior to commit c4a151a, a stack buffer overflow exists in the GnuTLS TLS backend when parsing the Subject Alternative Name extension of a peer certificate (tls_cert_get_info() in ssl_sock_gtls.c). Only GnuTLS builds are affected (--with-gnutls); OpenSSL and Apple SecureTransport/Network.framework builds are not affected. While extracting certificate information after a TLS handshake, an incorrect CVSSv3.1 9.1 (CRITICAL) · EPSS 17th percentile

CWECWE 121VNDPjsipVNDTeluuTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
1w ago
2026-09-04 18:17Z
CRIT

CVE-2026-57162 — Teluu Pjsip: Prior to commit a1b707c, a stack buffer overflow exists in the SRTP/SDES media transport

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-57162

PJSIP is a free and open source multimedia communication library written in C. Prior to commit a1b707c, a stack buffer overflow exists in the SRTP/SDES media transport when processing a=crypto attributes during SDP offer/answer (sdes_encode_sdp() in transport_srtp_sdes.c). This affects applications with SRTP enabled (use_srtp optional or mandatory, using SDES keying). During media negotiation, the crypto attributes from the remote SDP are collected into a fixed-size array wit CVSSv3.1 9.1 (CRITICAL) · EPSS 28th percentile

CWECWE 121VNDPjsipVNDTeluuTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
1w ago
2026-09-04 18:17Z
HIGH

CVE-2026-57161 — Teluu Pjsip: Prior to commit acc03b5, a stack buffer overflow exists in PJSUA when processing Service-Route

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-57161

PJSIP is a free and open source multimedia communication library written in C. Prior to commit acc03b5, a stack buffer overflow exists in PJSUA when processing Service-Route headers in a registration response (update_service_route() in pjsua_acc.c). This affects applications that register using the PJSUA/PJSUA2 account API (the default registration path). The Service-Route URIs from a 2xx response to REGISTER are stored into a fixed-size array without bounding the number of h CVSSv3.1 8.2 (HIGH) · EPSS 21th percentile

CWECWE 121VNDPjsipVNDTeluuTYPVulnerability
8.2
CVSS v3.1
91
Edit Score
1w ago
2026-09-04 17:16Z
CRIT

CVE-2026-78745 — Weyon: An issue in HiDPT/ Weyon HiDPTAndroid Hi3751V350 Hi3751V352E_DMO allows a remote attacker to execute

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-78745

An issue in HiDPT/ Weyon HiDPTAndroid Hi3751V350 Hi3751V352E_DMO allows a remote attacker to execute arbitrary code via the Android Debug Bridge (ADB) daemon (adbd) CVSSv3.1 9.8 (CRITICAL) · EPSS 35th percentile

CWECWE 284VNDWeyonTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
1w ago
2026-09-04 17:16Z
CRIT

CVE-2026-75430 — PowerJob: This allows a remote attacker to execute arbitrary code.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-75430

PowerJob Worker version 5.1.2 (and likely earlier versions) exposes the /worker/deployContainer HTTP endpoint without authentication on the default transport port. This allows a remote attacker to execute arbitrary code. CVSSv3.1 9.8 (CRITICAL)

VNDPowerjobTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
1w ago
2026-09-04 17:16Z
CRIT

CVE-2026-31020 — DocsGPT: In DocsGPT 0.15.0 and below, the application provides a custom prompt feature that allows

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-31020

In DocsGPT 0.15.0 and below, the application provides a custom prompt feature that allows users to define prompt content used during chatbot interactions. This functionality renders user-supplied prompt data using Jinja templates without input sanitization or sandboxing. An unauthenticated attacker can inject malicious template expressions, leading to a server-side template injection (SSTI) vulnerability that can be exploited to achieve full remote code execution (RCE). CVSSv3.1 9.8 (CRITICAL)

CWECWE 94VNDDocsgptTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
1w ago
2026-09-04 17:16Z
HIGH

CVE-2026-18486 — IBM: ContextForge MCP Gateway <= v1.0.7 MCP Context Forge could allow a remote authenticated

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-18486

IBM ContextForge MCP Gateway <= v1.0.7 MCP Context Forge could allow a remote authenticated attacker to obtain sensitive credentials and escalate privileges due to improper validation of jq filters. CVSSv3.1 8.8 (HIGH)

CWECWE 200VNDIbmTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
1w ago
2026-09-04 17:16Z
HIGH

CVE-2026-18221 — IBM: i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to gain

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-18221

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to gain unauthorized access due to improper validation of client-supplied authentication parameters. CVSSv3.1 8.1 (HIGH)

CWECWE 287VNDIbmTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
1w ago
2026-09-04 17:16Z
HIGH

CVE-2026-18175 — IBM: i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to manipulate

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-18175

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to manipulate database transactions due to improper authorization in the DDM target dispatcher. CVSSv3.1 8.1 (HIGH)

CWECWE 285VNDIbmTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
1w ago
2026-09-04 16:34Z
INFO

v9.7.0-rc4

BloodHound releases·github.comCVE-2026-84304

BloodHound v9.7.0-rc4 release candidate published with a patch for CVE-2026-84304 affecting gRPC dependencies. This is a routine pre-release version bump addressing a vulnerability in upstream gRPC.

SWBloodhoundVNDSpecteropsTYPTool
28
Edit Score
1w ago
2026-09-04 16:17Z
HIGH

CVE-2026-77822 — IBM: ContextForge MCP Gateway could allow a remote authenticated attacker to obtain sensitive information

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-77822

IBM ContextForge MCP Gateway could allow a remote authenticated attacker to obtain sensitive information due to server-side request forgery via DNS rebinding. CVSSv3.1 8.2 (HIGH)

CWECWE 918VNDIbmTYPVulnerability
8.2
CVSS v3.1
91
Edit Score
1w ago
2026-09-04 16:17Z
CRIT

CVE-2026-75431 — PowerJob: This allows a remote attacker to execute arbitrary code.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-75431

PowerJob Server version 5.1.2 (and likely earlier) uses a predictable JWT signing key for HS256-based authentication. This allows a remote attacker to execute arbitrary code. CVSSv3.1 9.1 (CRITICAL)

VNDPowerjobTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
1w ago
2026-09-04 16:17Z
CRIT

CVE-2026-75429 — PowerJob: versions 4.x through 5.1.2 contain an unauthenticated remote code execution vulnerability in the

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-75429

PowerJob versions 4.x through 5.1.2 contain an unauthenticated remote code execution vulnerability in the /friend/process endpoint of the Server-Worker transport layer CVSSv3.1 9.8 (CRITICAL) · EPSS 48th percentile

CWECWE 287VNDPowerjobTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
1w ago
2026-09-04 16:17Z
CRIT

CVE-2026-75171 — HubCore: An issue in HubCore v.14.1.1 allows a remote attacker to escalate privileges via the

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-75171

An issue in HubCore v.14.1.1 allows a remote attacker to escalate privileges via the HUBCOREID session cookie handling component. CVSSv3.1 9.8 (CRITICAL) · EPSS 13th percentile

CWECWE 384VNDHubcoreTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
1w ago
2026-09-04 16:17Z
HIGH

CVE-2026-75169 — An arbitrary file upload vulnerability in /cgi-bin/ugwupload.cgi of MBS-Solutions X-Serie Gateway firmware V6_00_05 allows

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-75169

An arbitrary file upload vulnerability in /cgi-bin/ugwupload.cgi of MBS-Solutions X-Serie Gateway firmware V6_00_05 allows a remote authenticated user with Admin role to upload files with arbitrary content to hardcoded paths. CVSSv3.1 8.8 (HIGH) · EPSS 15th percentile

CWECWE 434TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
1w ago
2026-09-04 16:17Z
HIGH

CVE-2026-75166 — Permission: Insecure Permission vulnerability in MBS-Solutions X-Serie Gateway firmware V6_00_05 allows the low-privileged service user

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-75166

Insecure Permission vulnerability in MBS-Solutions X-Serie Gateway firmware V6_00_05 allows the low-privileged service user to execute /usr/bin/tcpdump as root without a password. By leveraging the tcpdump -z option, an authenticated attacker can achieve arbitrary command execution. CVSSv3.1 8.8 (HIGH) · EPSS 10th percentile

CWECWE 269CWECWE 276TYPVulnerability
8.8
CVSS v3.1
94
Edit Score