2026-05-19
2026-05-19 18:16Z
CRIT

CVE-2026-8602 — Scadabr Scadabr: In ScadaBR version 1.2.0, a Missing Authentication for Critical Function vulnerability could allow an

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-8602

In ScadaBR version 1.2.0, a Missing Authentication for Critical Function vulnerability could allow an unauthenticated attacker to send a HTTP GET requests to the SCADA system and inject arbitrary sensor readings. CVSSv3.1 9.1 (CRITICAL)

CWECWE 306VNDScadabrTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
2026-05-19
2026-05-19 18:16Z
CRIT

CVE-2026-47107 — Windmill: prior to 1.703.2 contains an incorrect default permissions vulnerability in nsjail sandbox configuration

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-47107

Windmill prior to 1.703.2 contains an incorrect default permissions vulnerability in nsjail sandbox configuration files where /etc is bind-mounted without read-write restrictions, allowing authenticated users to write arbitrary entries to /etc/hosts, /etc/resolv.conf, and /etc/ssl/certs/ca-certificates.crt from within script execution sandboxes. Attackers can exploit persistent poisoned entries across all subsequent script executions on the same worker pod to redirect hostnam CVSSv3.1 9.6 (CRITICAL)

CWECWE 276VNDWindmillTYPVulnerability
9.6
CVSS v3.1
98
Edit Score
2026-05-19
2026-05-19 17:16Z
CRIT

CVE-2026-36829 — An authentication bypass vulnerability exists in the embedded HTTP server of Panabit PAP-XM320 up

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-36829

An authentication bypass vulnerability exists in the embedded HTTP server of Panabit PAP-XM320 up to and including v7.7. The server validates session cookies using a filesystem existence check based on a user-controlled cookie value without proper sanitization, allowing directory traversal and bypass of authentication. CVSSv3.1 9.8 (CRITICAL)

CWECWE 287CWECWE 22TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-05-19
2026-05-19 17:16Z
HIGH

CVE-2026-36828 — A command injection vulnerability exists in the /cgi-bin/tools/ajax_cmd endpoint of Panabit PAP-XM320 up to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-36828

A command injection vulnerability exists in the /cgi-bin/tools/ajax_cmd endpoint of Panabit PAP-XM320 up to and including v7.7. The CGI component allows authenticated users to execute arbitrary shell commands with root privileges via the action=runcmd parameter. CVSSv3.1 8.8 (HIGH)

CWECWE 78TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-05-19
2026-05-19 16:16Z
HIGH

CVE-2026-5804 — This could allow a local attacker to bypass permission checks and access protected device

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-5804

An improper authentication vulnerability was discovered in the Motorola Factory Test component (com.motorola.motocit). The application contained a reference to a writable file descriptor in external storage which could be used by third party apps running on the device to open a TCP server, exposing sensitive permissions and data. This could allow a local attacker to bypass permission checks and access protected device settings. CVSSv3.1 8.4 (HIGH)

TYPVulnerability
8.4
CVSS v3.1
92
Edit Score
2026-05-19
2026-05-19 16:16Z
CRIT

CVE-2026-37281 — An OS command injection vulnerability in the /stream-to-vlc Express route in hitarth-gg Zenshin before

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-37281

An OS command injection vulnerability in the /stream-to-vlc Express route in hitarth-gg Zenshin before 2.7.0 allows remote attackers to execute arbitrary commands via the url parameter. CVSSv3.1 9.8 (CRITICAL)

CWECWE 78TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-05-19
2026-05-19 16:16Z
CRIT

CVE-2026-31072 — JSONSerializer: The JSONSerializer and CBORSerializer in APScheduler (all versions including 3.10.x and 4.0.0a5) are vulnerable

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-31072

The JSONSerializer and CBORSerializer in APScheduler (all versions including 3.10.x and 4.0.0a5) are vulnerable to Remote Code Execution (RCE) via Insecure Deserialization. The unmarshal_object function allows for arbitrary class instantiation and state injection by dynamically importing modules and calling __setstate__ on any class available in the Python environment. An attacker can exploit this by submitting a specially crafted JSON or CBOR payload to an application using CVSSv3.1 9.8 (CRITICAL)

CWECWE 502VNDJsonserializerTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
728 × 90 / responsive · programmatic ad slot
2026-05-19
2026-05-19 16:16Z
CRIT

CVE-2026-31071 — API: endpoints in LalanaChami Pharmacy Management System (commit 5c3d028) lack authentication middleware.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-31071

API endpoints in LalanaChami Pharmacy Management System (commit 5c3d028) lack authentication middleware. Unauthenticated remote attackers can exploit this to dump all user records (including bcrypt password hashes) via /api/user/getUserData, modify drug inventory, and access private medical prescription data via /api/doctorOder. CVSSv3.1 9.1 (CRITICAL)

CWECWE 306VNDApiTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
2026-05-19
2026-05-19 16:16Z
CRIT

CVE-2026-31070 — LalanaChami: The LalanaChami Pharmacy Management System (commit 5c3d028) allows unauthenticated remote attackers to escalate privileges

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-31070

The LalanaChami Pharmacy Management System (commit 5c3d028) allows unauthenticated remote attackers to escalate privileges by self-assigning an administrative role during registration. The /api/user/signup endpoint fails to validate the role parameter in the request body CVSSv3.1 9.8 (CRITICAL)

CWECWE 269VNDLalanachamiTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-05-19
2026-05-19 16:16Z
HIGH

CVE-2026-31069 — BillaBear: (all versions prior to Jan 2026) contains a SQL Injection vulnerability in the

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-31069

BillaBear (all versions prior to Jan 2026) contains a SQL Injection vulnerability in the EventRepository. User-controlled input from metric filter names and aggregation properties is directly interpolated into SQL queries using sprintf() without proper sanitization or identifier quoting. Although filter values are parameterized, the filter identifiers (keys) are not. An authenticated attacker with ROLE_ACCOUNT_MANAGER permissions can exploit this to execute arbitrary SQL comm CVSSv3.1 8.8 (HIGH)

CWECWE 89VNDBillabearTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-05-19
2026-05-19 16:16Z
CRIT

CVE-2026-30118 — scalar/astro v0.1.13 was discovered to contain a Server-Side Request Forgery (SSRF) in the scalar_url

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-30118

scalar/astro v0.1.13 was discovered to contain a Server-Side Request Forgery (SSRF) in the scalar_url query parameter of the Scalar Proxy endpoint. This vulnerability allows unauthenticated attackers to force the backend server to send HTTP requests to attacker-controlled URLs, leading to authentication cookies and headers exposure and possible privilege escalation. CVSSv3.1 9.8 (CRITICAL)

CWECWE 918TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-05-19
2026-05-19 16:16Z
CRIT

CVE-2026-30117 — scalar/astro v0.1.13 was discovered to contain an arbitrary file upload vulnerability in the the

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-30117

scalar/astro v0.1.13 was discovered to contain an arbitrary file upload vulnerability in the the scalar_url query parameter of the Scalar Proxy endpoint. This vulnerability allows attackers to execute arbitrary code via uploading a crafted SVG file. CVSSv3.1 9.8 (CRITICAL)

CWECWE 94TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-05-19
2026-05-19 15:52Z
HIGH

Impacket 0.13.1

Impacket releases·github.comCVE-2025-33073

Impacket 0.13.1 released with significant enhancements to SMB relay, Kerberos ticket handling, MSSQL/TDS support, and LDAP operations. Notable additions include MSSQL and RDP relay servers in ntlmrelayx.py, improved offline credential extraction in secretsdump.py, and fixes for Windows Server 2025 NTDS.dit parsing. The release addresses CVE-2025-33073 with NTLM sign/seal removal paths for relay workflows.

SRFApplicationSRFNetworkSWImpacketVNDFortraTYPToolSTGDiscoverySTGCred AccessSTGLat Movement
78
Edit Score
2026-05-19
2026-05-19 15:16Z
HIGH

CVE-2026-8711 — NGINX: This may cause a heap buffer overflow in the NGINX worker process leading to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-8711

NGINX JavaScript has a vulnerability when the js_fetch_proxy directive is configured with at least one client-controlled NGINX variable (for example, $http_*, $arg_*, $cookie_*) and a location invoking the ngx.fetch() operation from NGINX JavaScript. An unauthenticated attacker can exploit this vulnerability by sending crafted HTTP requests. This may cause a heap buffer overflow in the NGINX worker process leading to a restart. Additionally, for systems with Address Space Lay CVSSv3.1 8.1 (HIGH)

CWECWE 122VNDNginxTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-05-19
2026-05-19 15:16Z
CRIT

CVE-2026-44159 — Tyler: Identity Local (TID-L) uses documented, default administrative credentials.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-44159

Tyler Identity Local (TID-L) uses documented, default administrative credentials. Users are not required to change the credentials before deployment. TID-L has not been distributed since December 2020, and has not been supported since 2021. CVSSv3.1 9.8 (CRITICAL)

CWECWE 1392VNDTylerTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-05-19
2026-05-19 15:16Z
CRIT

CVE-2026-2587 — Code: A critical Remote Code Execution (RCE) vulnerability was identified in the server-side template rendering

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-2587

A critical Remote Code Execution (RCE) vulnerability was identified in the server-side template rendering mechanism used by the Glassfish gadget handler. The application processes .xml files and evaluates user-supplied values within a context where Expression Language (EL) “expressions” are processed without proper sanitization or escaping. By injecting expressions such as #{7*7}, the server returns 49, confirming server-side EL evaluation. This issue allows a remote attacker CVSSv3.1 9.6 (CRITICAL)

CWECWE 917VNDCodeTYPVulnerability
9.6
CVSS v3.1
98
Edit Score
2026-05-19
2026-05-19 15:16Z
CRIT

CVE-2026-2586 — Code: An authenticated Remote Code Execution (RCE) vulnerability was identified in GlassFish's Administration Console.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-2586

An authenticated Remote Code Execution (RCE) vulnerability was identified in GlassFish's Administration Console. A user with access to the panel can send crafted requests that allow the execution of arbitrary operating system commands with the privileges of the application service user. CVSSv3.1 9.1 (CRITICAL)

CWECWE 94CWECWE 917VNDCodeTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
2026-05-19
2026-05-19 14:16Z
CRIT

CVE-2026-8975 — Memory: Some of these bugs showed evidence of memory corruption and we presume that with

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-8975

Memory safety bugs present in Firefox ESR 115.35, Firefox ESR 140.10 and Firefox 150. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 151, Firefox ESR 115.36, and Firefox ESR 140.11. CVSSv3.1 9.8 (CRITICAL)

CWECWE 119TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-05-19
2026-05-19 14:16Z
CRIT

CVE-2026-8974 — Memory: Some of these bugs showed evidence of memory corruption and we presume that with

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-8974

Memory safety bugs present in Firefox ESR 140.10 and Firefox 150. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 151 and Firefox ESR 140.11. CVSSv3.1 9.8 (CRITICAL)

CWECWE 119TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-05-19
2026-05-19 14:16Z
CRIT

CVE-2026-8973 — Memory: Some of these bugs showed evidence of memory corruption and we presume that with

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-8973

Memory safety bugs present in Firefox 150. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 151. CVSSv3.1 9.8 (CRITICAL)

CWECWE 119TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2026-05-19
2026-05-19 14:16Z
HIGH

CVE-2026-8972 — Mozilla Firefox: Privilege escalation in the WebRTC: Audio/Video component.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-8972

Privilege escalation in the WebRTC: Audio/Video component. This vulnerability was fixed in Firefox 151 and Thunderbird 151. CVSSv3.1 8.8 (HIGH)

CWECWE 269VNDMozillaTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-05-19
2026-05-19 14:16Z
HIGH

CVE-2026-8970 — Mozilla Firefox: Privilege escalation in the Security component.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-8970

Privilege escalation in the Security component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. CVSSv3.1 8.8 (HIGH)

CWECWE 269VNDMozillaTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2026-05-19
2026-05-19 14:16Z
HIGH

CVE-2026-8969 — Mitigation: bypass in the DOM: Security component.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-8969

Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 151. CVSSv3.1 8.1 (HIGH)

CWECWE 693VNDMitigationTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-05-19
2026-05-19 14:16Z
HIGH

CVE-2026-8962 — Mozilla Firefox: Mitigation bypass in the DOM: Security component.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-8962

Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 151, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11. CVSSv3.1 8.1 (HIGH)

CWECWE 693VNDMozillaVNDMitigationTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2026-05-19
2026-05-19 14:16Z
CRIT

CVE-2026-8959 — Sandbox: escape due to incorrect boundary conditions in the Widget: Win32 component.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-8959

Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 151 and Firefox ESR 140.11. CVSSv3.1 9.6 (CRITICAL)

CWECWE 20CWECWE 693CWECWE 119TYPVulnerability
9.6
CVSS v3.1
98
Edit Score