In memcached before 1.6.42, password data for SASL password database authentication has a timing side channel because memcmp is used by sasl_server_userdb_checkpass.
CVSSv3.1 8.1 (HIGH)
CWECWE 208TYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-05-20
2026-05-20 07:16Z
HIGH
CVE-2026-47783 — In memcached before 1.6.42, username data for SASL password database authentication has a timing
In memcached before 1.6.42, username data for SASL password database authentication has a timing side channel because a loop exits as soon as a valid username is found by sasl_server_userdb_checkpass.
CVSSv3.1 8.1 (HIGH)
CWECWE 208TYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-05-20
2026-05-20 05:16Z
HIGH
CVE-2026-9057 — A broken access control issue has been identified in the Talend Administration Center, that
A broken access control issue has been identified in the Talend Administration Center, that allows a user with “View” permission to modify the Talend Studio update URL. This issue was resolved in a patch, which is already available.
CVSSv3.1 8.2 (HIGH)
TYPVulnerability
8.2
CVSS v3.1
91
Edit Score
2026-05-20
2026-05-20 05:16Z
HIGH
CVE-2026-7522 — Advanced: The Advanced Database Cleaner – Premium plugin for WordPress is vulnerable to Local File
The Advanced Database Cleaner – Premium plugin for WordPress is vulnerable to Local File Inclusion in versions up to, and including, 4.1.0 via the 'template' parameter. This makes it possible for authenticated attackers, with Subscriber-level access and above, to include and execute arbitrary .php files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases whe
CVSSv3.1 8.8 (HIGH)
CWECWE 98VNDAdvancedTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-05-20
2026-05-20 04:16Z
CRIT
CVE-2026-7637 — Boost: The Boost plugin for WordPress is vulnerable to PHP Object Injection in versions up
The Boost plugin for WordPress is vulnerable to PHP Object Injection in versions up to, and including, 2.0.3 via deserialization of untrusted input in the STYXKEY-BOOST_USER_LOCATION cookie. This makes it possible for unauthenticated attackers to inject a PHP Object. No known POP chain is present in the vulnerable software, which means this vulnerability has no impact unless another plugin or theme containing a POP chain is installed on the site. If a POP chain is present via
CVSSv3.1 9.8 (CRITICAL)
CWECWE 502VNDBoostTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-05-20
2026-05-20 04:16Z
HIGH
CVE-2026-24214 — NVIDIA: Triton Inference Server contains a vulnerability in the DALI backend where an attacker
NVIDIA Triton Inference Server contains a vulnerability in the DALI backend where an attacker could cause an integer overflow. A successful exploit of this vulnerability might lead to code execution, data tampering, or denial of service.
CVSSv3.1 8.0 (HIGH)
CWECWE 190VNDNvidiaTYPVulnerability
8.0
CVSS v3.1
90
Edit Score
2026-05-20
2026-05-20 04:16Z
HIGH
CVE-2026-24213 — NVIDIA: Triton Inference Server contains a vulnerability in the DALI backend where an attacker
NVIDIA Triton Inference Server contains a vulnerability in the DALI backend where an attacker could cause an out-of-bounds read. A successful exploit of this vulnerability might lead to code execution, data tampering, denial of service, or information disclosure.
CVSSv3.1 8.0 (HIGH)
CWECWE 125VNDNvidiaTYPVulnerability
8.0
CVSS v3.1
90
Edit Score
728 × 90 / responsive · programmatic ad slot
2026-05-20
2026-05-20 04:16Z
CRIT
CVE-2026-24207 — NVIDIA: Triton Inference Server contains a vulnerability where an attacker could cause an authentication
NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause an authentication bypass. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, data tampering, denial of service, or information disclosure.
CVSSv3.1 9.8 (CRITICAL)
CWECWE 288VNDNvidiaTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-05-20
2026-05-20 02:16Z
HIGH
CVE-2026-7467 — Read: The Read More & Accordion plugin for WordPress is vulnerable to Privilege Escalation in
The Read More & Accordion plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.5.7. This is due to the 'RadMoreAjax::importData' function not restricting which database tables can be written to during import and not properly validating the imported data. This makes it possible for authenticated attackers, with permission granted by the site owner through the plugin's role settings, to insert arbitrary rows into the 'wp_users' and
CVSSv3.1 8.8 (HIGH)
CWECWE 269VNDReadTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-05-20
2026-05-20 02:16Z
CRIT
CVE-2026-7284 — Easy: The Easy Elements for Elementor – Addons & Website Templates plugin for WordPress is
The Easy Elements for Elementor – Addons & Website Templates plugin for WordPress is vulnerable to privilege escalation via user registration in all versions up to, and including, 1.4.4. This is due to the 'easyel_handle_register' function not restricting what user roles a user can register with. This makes it possible for unauthenticated attackers to supply the 'administrator' role during registration and gain administrator access to the site.
CVSSv3.1 9.8 (CRITICAL)
CWECWE 269VNDEasyTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-05-20
2026-05-20 02:16Z
CRIT
CVE-2026-6555 — ProSolution: The ProSolution WP Client plugin for WordPress is vulnerable to Arbitrary File Upload in
The ProSolution WP Client plugin for WordPress is vulnerable to Arbitrary File Upload in versions up to, and including, 2.0.0. This is due to an array validation mismatch where only the first file in the upload array undergoes extension and MIME type validation, while all files are processed and uploaded to a web-accessible directory. This makes it possible for unauthenticated attackers to upload malicious PHP files and achieve remote code execution by sending a valid first f
CVSSv3.1 9.8 (CRITICAL)
CWECWE 434VNDProsolutionTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-05-20
2026-05-20 02:16Z
HIGH
CVE-2026-6456 — Account: The Account Switcher plugin for WordPress is vulnerable to Privilege Escalation in all versions
The Account Switcher plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.0.2. This is due to the `rememberLogin` REST API endpoint using a loose comparison (`!=` instead of `!==`) for secret validation at `app/RestAPI.php:111`, combined with no validation that the secret is non-empty. When a target user has never used the "Remember me" feature, their `asSecret` user meta does not exist, causing `get_user_meta()` to return an empt
CVSSv3.1 8.8 (HIGH)
CWECWE 287VNDAccountTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-05-20
2026-05-20 02:16Z
HIGH
CVE-2026-43618 — Rsync: version 3.4.2 and prior contain an integer overflow vulnerability in the compressed-token decoder
Rsync version 3.4.2 and prior contain an integer overflow vulnerability in the compressed-token decoder where a 32-bit signed counter is not checked for overflow, allowing a malicious sender to trigger an overflow that causes the receiver process to read and return data from outside the intended buffer bounds. Attackers can exploit this vulnerability to disclose process memory contents including environment variables, passwords, heap and stack data, and library memory pointer
CVSSv3.1 8.1 (HIGH)
CWECWE 125CWECWE 190VNDRsyncTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-05-20
2026-05-20 00:00Z
CRIT
GitHub internal repositories breached
Sophos X-Ops·news.sophos.comin the wild
GitHub's internal systems were breached on May 19-20, 2026 via a malicious Visual Studio Code extension that harvested developer credentials from an employee's workstation. The attacker, tracked as TeamPCP/UNC6780, cloned approximately 3,800 internal GitHub repositories containing proprietary source code and configuration material, subsequently listing the data for sale on criminal forums. GitHub confirmed customer repositories and user data were not affected, but the incident demonstrates a sophisticated supply-chain attack pattern targeting developer tooling.
SRFApplicationTACTA0004TACTA0001TACTA0003SRFSupply ChainSWVisual Studio CodeVNDGithubTYPThreat Intel
78
Edit Score
2026-05-19
2026-05-19 23:16Z
CRIT
CVE-2026-8495 — Authorization: Missing Authorization vulnerability in Drupal Date iCal allows Forceful Browsing.
Missing Authorization vulnerability in Drupal Date iCal allows Forceful Browsing.
This issue affects Date iCal: from 0.0.0 before 4.0.15.
CVSSv3.1 9.8 (CRITICAL)
CWECWE 862TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-05-19
2026-05-19 22:16Z
HIGH
CVE-2026-34358 — CtrlPanel: Versions 1.1.1 and prior contains a broken access control vulnerability where multiple admin controllers
CtrlPanel is open-source billing software for hosting providers. Versions 1.1.1 and prior contains a broken access control vulnerability where multiple admin controllers enforce permission checks on form display methods but omit equivalent checks on the corresponding write methods, allowing any authenticated user to bypass RBAC via direct POST/PATCH requests. Controllers missing checks on write methods store() and update() include ApplicationApiController (admin.api.write), C
CVSSv3.1 8.1 (HIGH)
CWECWE 862CWECWE 284VNDCtrlpanelTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-05-19
2026-05-19 22:16Z
HIGH
CVE-2026-34241 — CtrlPanel: Versions 1.1.1 and prior contain a Stored Cross-Site Scripting (XSS) vulnerability in the ticket
CtrlPanel is open-source billing software for hosting providers. Versions 1.1.1 and prior contain a Stored Cross-Site Scripting (XSS) vulnerability in the ticket reply notification system. Unsanitized reply content ($newmessage) is stored directly in database notification payloads and later rendered unescaped via Blade's {!! !!} syntax in the recipient's browser. The flaw exists in both App\Notifications\Ticket\Admin\AdminReplyNotification (triggered when a user replies, targ
CVSSv3.1 8.7 (HIGH)
CWECWE 79VNDCtrlpanelTYPVulnerability
8.7
CVSS v3.1
94
Edit Score
2026-05-19
2026-05-19 22:16Z
CRIT
CVE-2026-34234 — CtrlPanel: In versions 1.1.1 and prior, the web-based installer (public/installer/index.php) is vulnerable to unauthenticated Remote
CtrlPanel is open-source billing software for hosting providers. In versions 1.1.1 and prior, the web-based installer (public/installer/index.php) is vulnerable to unauthenticated Remote Code Execution (RCE) because it performs the install.lock check only after including and executing form handler files, leaving installer endpoints reachable on already-installed instances. The handlers also pass unsanitized user input directly into shell commands, allowing an attacker to subm
CVSSv3.1 10.0 (CRITICAL)
CWECWE 284CWECWE 78VNDCtrlpanelTYPVulnerability
10.0
CVSS v3.1
100
Edit Score
2026-05-19
2026-05-19 20:16Z
HIGH
CVE-2026-32740 — HEIF: libheif is a HEIF and AVIF file format decoder and encoder.
libheif is a HEIF and AVIF file format decoder and encoder. Versions 1.21.2 and prior contain a heap-buffer-overflow (write) vulnerability in the grid tile compositing, allowing an attacker to write 64 bytes of fully attacker-controlled data past the end of a chroma plane heap allocation by crafting a HEIF/AVIF file with a 1×4 grid of odd-height tiles. The overflow is triggered during normal image decoding with default build configuration. The written bytes are chroma (Cb/Cr)
CVSSv3.1 8.8 (HIGH)
CWECWE 787VNDHeifTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-05-19
2026-05-19 20:16Z
HIGH
CVE-2026-27173 — JWT: This could allow users with just read-only access to perform actions that were only
JWT tokens that were used by workers in Kubernetes Executors have been exposed to users who had read only access to Kuberentes Pods. This could allow users with just read-only access to perform actions that were only available to running tasks via Task SDK and potentially allow to modify state of Airflow Database for tasks.
CVSSv3.1 8.7 (HIGH)
CWECWE 538VNDJwtTYPVulnerability
8.7
CVSS v3.1
94
Edit Score
2026-05-19
2026-05-19 19:16Z
CRIT
CVE-2026-33642 — Kitty: An attacker who can write escape sequences to a kitty terminal (e.g., via a
Kitty is a cross-platform GPU based terminal. In versions 0.46.2 and below, the handle_compose_command() function in kitty/graphics.c performs bounds validation on composition offsets using unsigned 32-bit arithmetic that is subject to integer wrapping, potentially leading to Heap Buffer Over-Read/Write. An attacker who can write escape sequences to a kitty terminal (e.g., via a malicious file, SSH login banner, or piped content) can supply crafted x_offset/y_offset values th
CVSSv3.1 9.9 (CRITICAL)
In ScadaBR version 1.2.0, a Use of Hard-Coded Credentials vulnerability could allow an attacker to access the SCADA system as admin.
CVSSv3.1 9.8 (CRITICAL)
CWECWE 798VNDScadabrTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-05-19
2026-05-19 18:16Z
HIGH
CVE-2026-8604 — Scadabr Scadabr: In ScadaBR version 1.2.0, a CSRF vulnerability could allow an attacker to trigger any
In ScadaBR version 1.2.0, a CSRF vulnerability could allow an attacker to trigger any authenticated action through a victim's session by luring any logged-in user to a malicious webpage.
CVSSv3.1 8.8 (HIGH)
CWECWE 352VNDScadabrTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-05-19
2026-05-19 18:16Z
CRIT
CVE-2026-8603 — Scadabr Scadabr: In ScadaBR version 1.2.0, an OS Command Injection vulnerability could allow an attacker to
In ScadaBR version 1.2.0, an OS Command Injection vulnerability could allow an attacker to execute commands as root on the SCADA system.
CVSSv3.1 9.8 (CRITICAL)
CWECWE 78VNDScadabrTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-05-19
2026-05-19 18:16Z
CRIT
CVE-2026-8602 — Scadabr Scadabr: In ScadaBR version 1.2.0, a Missing Authentication for Critical Function vulnerability could allow an
In ScadaBR version 1.2.0, a Missing Authentication for Critical Function vulnerability could allow an unauthenticated attacker to send a HTTP GET requests to the SCADA system and inject arbitrary sensor readings.
CVSSv3.1 9.1 (CRITICAL)