1w ago
2026-09-02 01:17Z
HIGH

CVE-2026-84695 — BookStack: before 26.05.4 contains a stored cross-site scripting vulnerability in the drawing upload endpoint

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84695

BookStack before 26.05.4 contains a stored cross-site scripting vulnerability in the drawing upload endpoint that accepts unvalidated base64 content and stores it without content inspection. Attackers with editor permissions can upload SVG files containing scripts that execute in administrator browsers when accessed through the image gallery API without content-type validation or CSP headers. CVSSv3.1 8.7 (HIGH)

CWECWE 79VNDBookstackTYPVulnerability
8.7
CVSS v3.1
94
Edit Score
1w ago
2026-09-02 01:17Z
HIGH

CVE-2026-84694 — Coolify: before 4.2.0 fails to properly escape environment variable key names in Docker commands

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84694

Coolify before 4.2.0 fails to properly escape environment variable key names in Docker commands executed over SSH on managed servers. Authenticated attackers can inject shell metacharacters into environment variable keys to execute arbitrary commands on the server host outside containers. CVSSv3.1 8.8 (HIGH)

CWECWE 78VNDCoolifyTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
1w ago
2026-09-02 00:18Z
CRIT

CVE-2026-84354 — Incorrect: authorization in FileSystem in Google Chrome prior to 152.0.7977.75 allowed a remote attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84354

Incorrect authorization in FileSystem in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 9.6 (CRITICAL)

CWECWE 863TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
1w ago
2026-09-02 00:18Z
CRIT

CVE-2026-84353 — Use: after free in Shared Tab Groups in Google Chrome on on Android prior

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84353

Use after free in Shared Tab Groups in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical) CVSSv3.1 9.6 (CRITICAL)

CWECWE 416TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
1w ago
2026-09-02 00:18Z
CRIT

CVE-2026-84352 — Use: after free in WebGL in Google Chrome on on Android prior to 152.0.7977.75

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84352

Use after free in WebGL in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical) CVSSv3.1 9.6 (CRITICAL)

CWECWE 416TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
1w ago
2026-09-02 00:18Z
HIGH

CVE-2026-84351 — Buffer: overflow in GPU in Google Chrome on on Windows prior to 152.0.7977.75 allowed

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84351

Buffer overflow in GPU in Google Chrome on on Windows prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.3 (HIGH)

CWECWE 121VNDBufferTYPVulnerability
8.3
CVSS v3.1
92
Edit Score
1w ago
2026-09-02 00:18Z
HIGH

CVE-2026-84350 — Use: after free in TabStrip in Google Chrome prior to 152.0.7977.75 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84350

Use after free in TabStrip in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to execute arbitrary code outside the sandbox via UI Interaction. (Chromium security severity: Low) CVSSv3.1 8.8 (HIGH)

CWECWE 416TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
728 × 90 / responsive · programmatic ad slot
1w ago
2026-09-02 00:18Z
HIGH

CVE-2026-84349 — Use: after free in Browser in Google Chrome prior to 152.0.7977.75 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84349

Use after free in Browser in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.3 (HIGH)

CWECWE 416TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
1w ago
2026-09-02 00:18Z
HIGH

CVE-2026-84347 — Use: after free in WebRTC in Google Chrome prior to 152.0.7977.75 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84347

Use after free in WebRTC in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium) CVSSv3.1 8.8 (HIGH)

CWECWE 416TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
1w ago
2026-09-02 00:18Z
HIGH

CVE-2026-84335 — Incorrect: authorization in TabStrip in Google Chrome prior to 152.0.7977.75 allowed a remote attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84335

Incorrect authorization in TabStrip in Google Chrome prior to 152.0.7977.75 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Medium) CVSSv3.1 8.3 (HIGH)

CWECWE 863TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
1w ago
2026-09-02 00:18Z
HIGH

CVE-2026-84334 — Incorrect: authorization in Chromoting in Google Chrome on on Windows prior to 152.0.7977.75 allowed

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84334

Incorrect authorization in Chromoting in Google Chrome on on Windows prior to 152.0.7977.75 allowed a local attacker to execute arbitrary code outside the sandbox via a local program. (Chromium security severity: Medium) CVSSv3.1 8.1 (HIGH)

CWECWE 863TYPVulnerability
8.1
CVSS v3.1
91
Edit Score
1w ago
2026-09-02 00:18Z
CRIT

CVE-2026-84333 — Use: after free in Dawn in Google Chrome on on Android prior to 152.0.7977.75

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84333

Use after free in Dawn in Google Chrome on on Android prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 9.6 (CRITICAL)

CWECWE 416TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
1w ago
2026-09-02 00:18Z
HIGH

CVE-2026-84326 — Uninitialized: resource in V8 in Google Chrome prior to 152.0.7977.75 allowed a remote attacker

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84326

Uninitialized resource in V8 in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High) CVSSv3.1 8.8 (HIGH)

CWECWE 908VNDUninitializedTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
1w ago
2026-09-02 00:18Z
CRIT

CVE-2026-84325 — DataTransfer: Improper input validation in DataTransfer in Google Chrome prior to 152.0.7977.75 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84325

Improper input validation in DataTransfer in Google Chrome prior to 152.0.7977.75 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a co-installed app. (Chromium security severity: High) CVSSv3.1 9.8 (CRITICAL)

CWECWE 20VNDDatatransferTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
1w ago
2026-09-02 00:18Z
CRIT

CVE-2026-84324 — Use: after free in Proxy in Google Chrome prior to 152.0.7977.75 allowed a remote

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84324

Use after free in Proxy in Google Chrome prior to 152.0.7977.75 allowed a remote attacker to execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: High) CVSSv3.1 9.0 (CRITICAL)

CWECWE 416TYPVulnerability
9.0
CVSS v3.1
95
Edit Score
1w ago
2026-09-02 00:00Z
CRIT

SonicWall 83548 83549

Sophos X-Ops·news.sophos.comCVE-2026-83548CVE-2026-83549in the wild

SonicWall disclosed two critical vulnerabilities in SMA1000 appliances (models 6210, 7210, 8200v): CVE-2026-83548 is an unauthenticated SSRF (CVSS 10.0) in the Workplace interface enabling unauthorized access, and CVE-2026-83549 is an authenticated OS command injection (CVSS 7.8) in the Appliance Management Console. Both are confirmed in active exploitation in the wild.

TACTA0001TACTA0002SRFNetwork ApplianceSWSonicwall Sma1000VNDSonicwallTYPVulnerabilityTYPAdvisorySTGExecution
92
Edit Score
1w ago
2026-09-02 00:00Z
HIGH

REVSTEALER ramps up: analysis of up-and-coming infostealer

Elastic Security Labs·elastic.co

Elastic Security Labs published a comprehensive analysis of REVSTEALER, an emerging infostealer malware family with ~4,700 samples detected over the past year. The malware targets browser credentials, cryptocurrency wallets, gaming accounts (Battle.net, Steam, Roblox, Minecraft), and implements sophisticated anti-analysis features including a weighted sandbox scoring system, CIS-locale exclusion checks, and Polygon blockchain-based dead-drop C2 resilience. Distribution occurs primarily through YouTube account takeovers promoting fake game cheats and mod menus, with four follow-on modules (ProManager, WinUpdate, SoftManager, LockAppHost) delivering wallet theft, clipboard hijacking, reverse proxy access, and XMRig cryptomining.

SRFApplicationSRFOsTACTA0006TACTA0007SRFWebTACTA0009TACTA0010OSWindows
78
Edit Score
1w ago
2026-09-01 23:17Z
HIGH

CVE-2026-84482 — WWBN: AVideo through commit 9c39d8c8 contains a cross-site request forgery vulnerability in the get_domain()

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84482

WWBN AVideo through commit 9c39d8c8 contains a cross-site request forgery vulnerability in the get_domain() and isSameDomain() functions that fail to properly validate referer origins. Attackers can forge requests from sibling subdomains or unparseable long-gTLD origins to perform administrative ObjectYPT writes including live server configuration changes. CVSSv3.1 8.8 (HIGH)

CWECWE 346VNDWwbnTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
1w ago
2026-09-01 23:17Z
CRIT

CVE-2026-84480 — WWBN: AVideo fails to validate password recovery token expiration in userRecoverPassSave.json.php, allowing attackers to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84480

WWBN AVideo fails to validate password recovery token expiration in userRecoverPassSave.json.php, allowing attackers to use expired tokens to reset account passwords indefinitely. Attackers who obtain a recovery token can use it at any time to change the target account's password and gain full account access. CVSSv3.1 9.8 (CRITICAL)

CWECWE 613VNDWwbnTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
1w ago
2026-09-01 23:17Z
CRIT

CVE-2026-84479 — WWBN: AVideo (current e01e41ecc and earlier) makes three login-time security controls depend solely on

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84479

WWBN AVideo (current e01e41ecc and earlier) makes three login-time security controls depend solely on the client-supplied User-Agent header. The isAVideoEncoder()/isAVideoMobileApp() checks match HTTP_USER_AGENT against a hardcoded literal ("AVideoEncoder"/"AVideoMobileApp") with no IP check or shared secret. An attacker who submits valid credentials and sets User-Agent: AVideoEncoder bypasses two-factor authentication, skips brute-force captcha escalation, and avoids being r CVSSv3.1 9.1 (CRITICAL)

CWECWE 290VNDWwbnTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
1w ago
2026-09-01 22:17Z
CRIT

CVE-2026-84639 — Triggering: an error condition in certain MIME bodies would cause uninitialized memory to be

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84639

Triggering an error condition in certain MIME bodies would cause uninitialized memory to be used. This vulnerability was fixed in Thunderbird 155, Thunderbird 140.15, and Thunderbird 153.2. CVSSv3.1 9.1 (CRITICAL)

CWECWE 457VNDTriggeringTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
1w ago
2026-09-01 22:17Z
CRIT

CVE-2026-84637 — Malicious: calendar invitations could use file URI attachments to launch local or network-hosted executables

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84637

Malicious calendar invitations could use file URI attachments to launch local or network-hosted executables on Windows, bypassing Thunderbird's normal executable attachment protections. With the new invitation display enabled, the attachment could also appear under a misleading filename. This vulnerability was fixed in Thunderbird 154 and Thunderbird 153.2. CVSSv3.1 9.8 (CRITICAL)

CWECWE 434VNDMaliciousTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
1w ago
2026-09-01 22:17Z
CRIT

CVE-2026-84372 — Predis: From version 3.0.0-RC1 until version 3.3.0, pipeline handling on aggregate cluster and replication connections

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84372

Predis is a flexible and feature-complete Redis and Valkey client for PHP. From version 3.0.0-RC1 until version 3.3.0, pipeline handling on aggregate cluster and replication connections reparses an already serialized RESP buffer in AbstractAggregateConnection::write() by splitting it with explode("\r\n") instead of honoring RESP length prefixes. Attacker-controlled keys or values containing CRLF sequences can therefore be interpreted by Command::deserializeCommand() as additi CVSSv3.1 9.8 (CRITICAL)

CWECWE 93VNDPredisTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
1w ago
2026-09-01 22:17Z
HIGH

CVE-2026-83549 — Sonicwall Sma8200v: Post-authentication Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-83549in the wild

Post-authentication Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability has been identified in the SMA1000 Appliance Management Console (AMC) which in specific conditions could potentially enable a remote authenticated attacker as administrator to execute arbitrary OS commands, resulting in remote code execution. CVSSv3.1 7.8 (HIGH) · EPSS 58th percentile

CWECWE 78VNDSonicwallVNDPostTYPVulnerabilitySTAitw exploited
7.8
CVSS v3.1
89
Edit Score
1w ago
2026-09-01 22:17Z
CRIT

CVE-2026-83548 — Pre: A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-83548

A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended alternate access path. A remote unauthenticated attacker could potentially exploit this vulnerability to gain unauthorized access to sensitive functionality and perform unauthorized operations. CVSSv3.1 10.0 (CRITICAL)

CWECWE 918CWECWE 441VNDPreTYPVulnerability
10.0
CVSS v3.1
100
Edit Score