2026-06-16
2026-06-16 20:16Z
HIGH

CVE-2026-0139 — Modem: In Modem, there is a possible out of bounds write due to a missing

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-0139

In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. CVSSv3.1 8.8 (HIGH)

CWECWE 119VNDModemTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-06-16
2026-06-16 20:16Z
HIGH

CVE-2026-0132 — Modem: In Modem, there is a possible out of bounds write due to a heap

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-0132

In Modem, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. CVSSv3.1 8.8 (HIGH)

CWECWE 122VNDModemTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-06-16
2026-06-16 20:16Z
CRIT

CVE-2026-0126 — Google Android: In WC-Radio, there is a possible out of bounds write due to a missing

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-0126

In WC-Radio, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. CVSSv3.1 9.8 (CRITICAL) · EPSS 5th percentile

CWECWE 787VNDGoogleVNDRadioTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-06-16
2026-06-16 19:17Z
HIGH

CVE-2026-53866 — OpenClaw: before 2026.5.12 contains an allowlist bypass vulnerability in shell inline-command parsing that allows

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-53866

OpenClaw before 2026.5.12 contains an allowlist bypass vulnerability in shell inline-command parsing that allows authenticated operators to execute unapproved commands. A command request using shell inline-command forms could route through a parser case missing the expected allowlist decision, enabling shell content execution without intended approval prompts. CVSSv3.1 8.1 (HIGH)

CWECWE 862VNDOpenclawTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-06-16
2026-06-16 19:17Z
HIGH

CVE-2026-53864 — OpenClaw: before 2026.5.26 contains an insufficient sanitization vulnerability in the host environment sanitizer that

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-53864

OpenClaw before 2026.5.26 contains an insufficient sanitization vulnerability in the host environment sanitizer that allows Node.js control variables to bypass validation. Attackers with access to workspace .env files, tool environment overrides, or skill environment blocks can pass malicious Node.js control variables to influence child processes or coverage output paths. CVSSv3.1 8.1 (HIGH)

CWECWE 184VNDOpenclawTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-06-16
2026-06-16 19:17Z
HIGH

CVE-2026-53857 — OpenClaw: before 2026.5.3 contains a policy enforcement vulnerability where Zalo contacts with mutable display

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-53857

OpenClaw before 2026.5.3 contains a policy enforcement vulnerability where Zalo contacts with mutable display metadata could match allowFrom policy entries through display name changes. Attackers with mutable display names could receive agent responses intended for different Zalo identities when the feature is enabled. CVSSv3.1 8.1 (HIGH)

CWECWE 290VNDOpenclawTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-06-16
2026-06-16 19:17Z
HIGH

CVE-2026-53855 — OpenClaw: before 2026.4.2 contains an inline-eval bypass vulnerability allowing authenticated operators to weaken strict

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-53855

OpenClaw before 2026.4.2 contains an inline-eval bypass vulnerability allowing authenticated operators to weaken strict allowlist checks via shell positional parameters. Attackers can combine allowlisted tools with shell positional arguments to place inline-eval content in shell carriers outside intended allowlist rules, enabling execution of unapproved shell-provided content. CVSSv3.1 8.1 (HIGH)

CWECWE 863CWECWE 184VNDOpenclawTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
728 × 90 / responsive · programmatic ad slot
2026-06-16
2026-06-16 19:17Z
HIGH

CVE-2026-53853 — OpenClaw: before 2026.5.12 contains an argument pattern validation bypass in the exec allowlist that

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-53853

OpenClaw before 2026.5.12 contains an argument pattern validation bypass in the exec allowlist that allows attackers to execute disallowed arguments for allowlisted executables on Linux and macOS systems. Attackers can bypass configured argPattern restrictions by directly invoking allowlisted executables with unrestricted arguments, potentially enabling unauthorized file access, network access, or command execution. CVSSv3.1 8.3 (HIGH)

CWECWE 863CWECWE 693VNDOpenclawTYPVulnerability
8.3
CVSS v3.1
92
Edit Score
2026-06-16
2026-06-16 19:17Z
HIGH

CVE-2026-53849 — OpenClaw: before 2026.5.7 contains a privilege escalation vulnerability where the allowFrom feature improperly validates

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-53849

OpenClaw before 2026.5.7 contains a privilege escalation vulnerability where the allowFrom feature improperly validates Discord account identity using mutable display names instead of immutable user IDs. Attackers with Discord accounts can change their display name to match a policy entry and gain unauthorized agent access intended for another Discord identity. CVSSv3.1 8.1 (HIGH)

CWECWE 290VNDOpenclawTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-06-16
2026-06-16 19:17Z
HIGH

CVE-2026-53843 — OpenClaw: before 2026.5.26 contains an authorization bypass vulnerability where a surviving pairing-scoped device session

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-53843

OpenClaw before 2026.5.26 contains an authorization bypass vulnerability where a surviving pairing-scoped device session can re-establish node token authority after revocation. Attackers with a paired device can regain WebSocket node-level access without renewed approval, weakening revocation controls and maintaining unauthorized access longer than intended. CVSSv3.1 8.8 (HIGH)

CWECWE 613VNDOpenclawTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-06-16
2026-06-16 19:16Z
HIGH

CVE-2026-50656 — Microsoft Malware_protection_engine: is aware of an elevation of privilege in the Microsoft Malware Protection Engine

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-50656

Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as "RoguePlanet ". CVSSv3.1 7.8 (HIGH) · EPSS 95th percentile

CWECWE 59VNDMicrosoftTYPVulnerability
7.8
CVSS v3.1
92
Edit Score
2026-06-16
2026-06-16 17:16Z
CRIT

CVE-2026-53776 — Perry: before 0.5.1166 contains a JWT validation vulnerability that allows remote attackers to bypass

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-53776

Perry before 0.5.1166 contains a JWT validation vulnerability that allows remote attackers to bypass token expiration by exploiting the unconditional setting of validate_exp = false in the verify_decode helper within the stdlib JWT verification path. Attackers in possession of a previously issued bearer token can present expired tokens to any jwt.verify() call and retain authenticated access indefinitely, bypassing force-expired sessions such as user logout or administrative CVSSv3.1 9.1 (CRITICAL)

CWECWE 613VNDPerryTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
2026-06-16
2026-06-16 17:16Z
HIGH

CVE-2026-44932 — Passing: of unsanitized strings from DHCP replies into the wicked dhcp client before wicked

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-44932

Passing of unsanitized strings from DHCP replies into the wicked dhcp client before wicked 0.6.79 could be used by attackers operating a malicious DHCP server to execute code on the local machine. CVSSv3.1 8.8 (HIGH)

CWECWE 78VNDPassingTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-06-16
2026-06-16 17:16Z
HIGH

CVE-2026-42089 — Yeoman: In downstream consumers that pass attacker-controlled project configuration into this path, this can result

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-42089

Yeoman Environment provides an API to discover, create, and run generators, and to configure where and how a generator is resolved. Versions 2.9.0 through 6.0.0 install missing local generator packages from caller-supplied package names without user confirmation. In downstream consumers that pass attacker-controlled project configuration into this path, this can result in arbitrary package installation and code execution during CLI bootstrap. The vulnerable method is installL CVSSv3.1 8.6 (HIGH)

CWECWE 829VNDYeomanTYPVulnerability
8.6
CVSS v3.1
93
Edit Score
2026-06-16
2026-06-16 17:16Z
HIGH

CVE-2026-10649 — Pacemaker: An unauthenticated remote attacker can exploit an integer overflow vulnerability in the remote message

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-10649

A flaw was found in Pacemaker. An unauthenticated remote attacker can exploit an integer overflow vulnerability in the remote message decompression process. By sending a specially crafted compressed remote message before authentication, an attacker can cause memory corruption, leading to a denial of service (DoS) in the CIB remote listener. This can result in the affected service crashing. CVSSv3.1 8.6 (HIGH)

CWECWE 190VNDPacemakerTYPVulnerability
8.6
CVSS v3.1
93
Edit Score
2026-06-16
2026-06-16 17:16Z
HIGH

CVE-2025-71261 — An attacker with network-level access between the SUSE Virtualization and Rancher Manager in SUSE

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2025-71261

An attacker with network-level access between the SUSE Virtualization and Rancher Manager in SUSE Harvester before 1.8.0 could interfere with the TLS handshake and abuse it to bypass TLS as a security control. CVSSv3.1 8.6 (HIGH)

CWECWE 295TYPVulnerability
8.6
CVSS v3.1
93
Edit Score
2026-06-16
2026-06-16 17:16Z
HIGH

CVE-2024-24909 — Dell: OpenManage Integration with Microsoft Windows Admin Center contains a Remote Code Execution vulnerability

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2024-24909

Dell OpenManage Integration with Microsoft Windows Admin Center contains a Remote Code Execution vulnerability in the gateway plugin. A remote authenticated user could potentially exploit this vulnerability to escalate privileges. The malicious user may gain the ability to run arbitrary code remotely. This is a high severity vulnerability so Dell recommends customers to upgrade at the earliest opportunity. CVSSv3.1 8.8 (HIGH)

CWECWE 77VNDDellTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-06-16
2026-06-16 16:00Z
INFO

Mythic Embarking on the Open Seas: Containerized Payload Delivery for Kubernetes Assessments

SpecterOps·specterops.io

SpecterOps released two new Mythic C2 extensions—container_wrapper and container_registry—to streamline containerized payload delivery for Kubernetes assessments. The tools automate wrapping Mythic payloads in OCI-compatible containers and publishing them to a self-hosted registry behind an HTTPS redirector, enabling operators to deliver ceded access via Kubernetes manifests without manual Docker CLI workflows.

TACTA0001SRFCloudSWKubernetesSWMythicSWDockerSWBuildahSWSkopeoTYPTool
72
Edit Score
2026-06-16
2026-06-16 15:23Z
CRIT

CVE-2026-20253 | Splunk Enterprise PostgreSQL Sidecar Service Arbitrary File Write Vulnerability

Horizon3.ai·horizon3.aiCVE-2026-20253

CVE-2026-20253 is a critical unauthenticated arbitrary file write vulnerability in Splunk Enterprise's PostgreSQL sidecar service (CVSS 9.8). The flaw allows network-reachable attackers to create or truncate arbitrary files without authentication, potentially leading to RCE by overwriting executable files. Splunk released patches for affected versions 10.0.0–10.0.6 and 10.2.0–10.2.3; public exploits appeared within 3 days of disclosure.

SRFApplicationTACTA0001SWSplunk EnterpriseVNDSplunkTYPVulnerabilitySTGInitial AccessTECT1190EXPRce
92
Edit Score
2026-06-16
2026-06-16 15:16Z
HIGH

CVE-2026-48780 — Forem: Prior to commit a2ab6d4, a maliciously crafted email address could allow an attacker to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-48780

Forem is open source software for building communities. Prior to commit a2ab6d4, a maliciously crafted email address could allow an attacker to bypass domain allowlist or denylist restrictions and gain access to invite-only forem deployments. The issue is patched as of `a2ab6d4`. As a workaround, some SMTP servers and email delivery providers may drop or refuse to send maliciously crafted email addresses. CVSSv3.1 8.2 (HIGH)

CWECWE 287VNDForemTYPVulnerability
8.2
CVSS v3.1
91
Edit Score
2026-06-16
2026-06-16 13:16Z
HIGH

CVE-2026-12328 — Memory: Some of these bugs showed evidence of memory corruption and we presume that with

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-12328

Memory safety bugs present in Firefox ESR 115.36, Firefox ESR 140.11, Thunderbird ESR 140.11, Firefox 151 and Thunderbird 151. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, and Firefox ESR 115.37. CVSSv3.1 8.1 (HIGH)

CWECWE 120TYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-06-16
2026-06-16 13:16Z
HIGH

CVE-2026-12327 — Memory: Some of these bugs showed evidence of memory corruption and we presume that with

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-12327

Memory safety bugs present in Firefox ESR 140.11, Thunderbird ESR 140.11, Firefox 151 and Thunderbird 151. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12. CVSSv3.1 8.1 (HIGH)

CWECWE 119TYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-06-16
2026-06-16 13:16Z
HIGH

CVE-2026-12326 — Memory: Some of these bugs showed evidence of memory corruption and we presume that with

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-12326

Memory safety bugs present in Firefox 151 and Thunderbird 151. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 152 and Thunderbird 152. CVSSv3.1 8.1 (HIGH)

CWECWE 119TYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-06-16
2026-06-16 13:16Z
CRIT

CVE-2026-12316 — Mitigation: bypass in the DOM: Security component.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-12316

Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 152 and Thunderbird 152. CVSSv3.1 9.1 (CRITICAL)

CWECWE 693VNDMitigationTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
2026-06-16
2026-06-16 13:16Z
CRIT

CVE-2026-12315 — Mitigation: bypass in the DOM: Security component.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-12315

Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, Thunderbird 152, and Thunderbird 140.12. CVSSv3.1 9.1 (CRITICAL)

CWECWE 693VNDMitigationTYPVulnerability
9.1
CVSS v3.1
96
Edit Score