1d ago
2026-07-28 23:17Z
CRIT

CVE-2026-54658 — Hypequery: Prior to 2.0.2, escapeValue() in packages/clickhouse/src/core/utils.ts did not escape backslashes before single quotes during

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-54658

Hypequery is a TypeScript semantic layer for ClickHouse. Prior to 2.0.2, escapeValue() in packages/clickhouse/src/core/utils.ts did not escape backslashes before single quotes during parameter substitution, allowing attacker controlled query parameters with a trailing backslash to escape the closing quote and inject arbitrary SQL. This issue is fixed in version 2.0.2. CVSSv3.1 9.8 (CRITICAL)

CWECWE 89VNDHypequeryTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
1d ago
2026-07-28 23:17Z
HIGH

CVE-2026-54650 — In 0.1.1 and earlier, openhole-server in internal/server/public_proxy.go forwarded r.URL.Path instead of preserving the original

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-54650

openhole exposes localhost to the internet in one command. In 0.1.1 and earlier, openhole-server in internal/server/public_proxy.go forwarded r.URL.Path instead of preserving the original request target with r.URL.EscapedPath(), allowing percent encoded dot segments %2e and separators %2f to reach tunneled local services as ../ and / for path traversal. This issue is fixed in version 0.1.2. CVSSv3.1 8.6 (HIGH)

CWECWE 22TYPVulnerability
8.6
CVSS v3.1
93
Edit Score
1d ago
2026-07-28 22:17Z
HIGH

CVE-2026-54691 — Python: datamodel-code-generator generates Python data models from schema definitions.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-54691

datamodel-code-generator generates Python data models from schema definitions. From 0.9.1 until 0.61.0, src/datamodel_code_generator/http.py http.get_body accepts --url targets and redirect chain targets without host/IP validation, allowing server-side request forgery against loopback, private, link-local, metadata, and other network-accessible resources. This issue is fixed in version 0.61.0. CVSSv3.1 8.2 (HIGH)

CWECWE 918TYPVulnerability
8.2
CVSS v3.1
91
Edit Score
1d ago
2026-07-28 22:17Z
HIGH

CVE-2026-54690 — Pydantic: From 0.9.1 until 0.61.0, datamodel-code-generator silently dereferences attacker-controlled JSON Schema $ref HTTP or HTTPS

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-54690

datamodel-code-generator generates Pydantic v2 models, dataclasses, TypedDict, and msgspec.Struct from OpenAPI, JSON Schema, GraphQL, Avro, Protobuf, and raw JSON, YAML, or CSV. From 0.9.1 until 0.61.0, datamodel-code-generator silently dereferences attacker-controlled JSON Schema $ref HTTP or HTTPS URLs in src/datamodel_code_generator/parser/jsonschema.py through _get_ref_body, and the --allow-remote-refs gate can warn instead of blocking, allowing server-side request forger CVSSv3.1 8.2 (HIGH)

CWECWE 918VNDPydanticTYPVulnerability
8.2
CVSS v3.1
91
Edit Score
1d ago
2026-07-28 22:17Z
HIGH

CVE-2026-54653 — Pydantic: datamodel-code-generator generates Pydantic v2 models, dataclasses, TypedDict, and msgspec.Struct from OpenAPI, JSON Schema, GraphQL

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-54653

datamodel-code-generator generates Pydantic v2 models, dataclasses, TypedDict, and msgspec.Struct from OpenAPI, JSON Schema, GraphQL, Avro, Protobuf, and raw JSON, YAML, or CSV. From 0.17.0 until 0.60.2, datamodel-code-generator preserves attacker-controlled default_factory values in src/datamodel_code_generator/parser/jsonschema.py through JsonSchemaObject.init and get_field_extras and emits them into Field(default_factory=...) or field(default_factory=...), allowing Python CVSSv3.1 8.8 (HIGH)

CWECWE 94CWECWE 1336VNDPydanticTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
1d ago
2026-07-28 21:17Z
HIGH

CVE-2026-15325 — IBM: WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-15325

IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to HTTP request smuggling due to improper handling of TRACE requests. CVSSv3.1 8.7 (HIGH)

CWECWE 444VNDIbmTYPVulnerability
8.7
CVSS v3.1
94
Edit Score
1d ago
2026-07-28 21:17Z
HIGH

CVE-2026-15064 — IBM: WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-15064

IBM WebSphere Application Server 9.0, and 8.5 and IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.7 is vulnerable to HTTP Response Smuggling due to improper handling of non-standard HTTP version tokens. CVSSv3.1 8.7 (HIGH)

CWECWE 444VNDIbmTYPVulnerability
8.7
CVSS v3.1
94
Edit Score
728 × 90 / responsive · programmatic ad slot
1d ago
2026-07-28 21:17Z
HIGH

CVE-2026-14996 — IBM: Aspera Faspex 5 5.0.0 through 5.0.15.4 has addressed a vulnerability related to session

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-14996

IBM Aspera Faspex 5 5.0.0 through 5.0.15.4 has addressed a vulnerability related to session management. CVSSv3.1 8.2 (HIGH)

CWECWE 613VNDIbmTYPVulnerability
8.2
CVSS v3.1
91
Edit Score
1d ago
2026-07-28 21:17Z
HIGH

CVE-2026-14974 — IBM: WebSphere Application Server 8.5, and 9.0 traditional could allow a remote attacker to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-14974

IBM WebSphere Application Server 8.5, and 9.0 traditional could allow a remote attacker to execute arbitrary code caused by unsafe deserialization of untrusted data. CVSSv3.1 8.1 (HIGH)

CWECWE 502VNDIbmTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
1d ago
2026-07-28 21:17Z
CRIT

CVE-2026-14973 — IBM: Aspera Desktop App 1.0.5 through 1.0.19 IBM Aspera for desktop can allow files

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-14973

IBM Aspera Desktop App 1.0.5 through 1.0.19 IBM Aspera for desktop can allow files to be written outside of the user's selected download destination. CVSSv3.1 9.3 (CRITICAL)

CWECWE 22VNDIbmTYPVulnerability
9.3
CVSS v3.1
97
Edit Score
1d ago
2026-07-28 21:17Z
CRIT

CVE-2026-14959 — IBM: Aspera Faspex 5 5.0.0 through 5.0.15.4 could allow a remote authenticated attacker to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-14959

IBM Aspera Faspex 5 5.0.0 through 5.0.15.4 could allow a remote authenticated attacker to execute arbitrary code due to shell command injection. CVSSv3.1 9.1 (CRITICAL)

CWECWE 78VNDIbmTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
1d ago
2026-07-28 21:17Z
CRIT

CVE-2026-14958 — IBM: Aspera Faspex 5 5.0.0 through 5.0.15.4 could allow a remote authenticated attacker to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-14958

IBM Aspera Faspex 5 5.0.0 through 5.0.15.4 could allow a remote authenticated attacker to execute arbitrary code due to unquoted shell interpolation. CVSSv3.1 9.1 (CRITICAL)

CWECWE 78VNDIbmTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
1d ago
2026-07-28 21:17Z
CRIT

CVE-2026-14512 — IBM: WebSphere Application Server 9.0, and 8.5 traditional is vulnerable to pre-authentication unsafe deserialization

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-14512

IBM WebSphere Application Server 9.0, and 8.5 traditional is vulnerable to pre-authentication unsafe deserialization which could allow a remote attacker to bypass authentication or execute arbitrary code. CVSSv3.1 9.8 (CRITICAL)

CWECWE 502VNDIbmTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
1d ago
2026-07-28 21:17Z
CRIT

CVE-2026-14446 — IBM: WebSphere Application Server 9.0, and 8.5 is vulnerable to broken access control/privilege escalation

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-14446

IBM WebSphere Application Server 9.0, and 8.5 is vulnerable to broken access control/privilege escalation in the administrative console. CVSSv3.1 9.8 (CRITICAL)

CWECWE 306VNDIbmTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
1d ago
2026-07-28 20:17Z
HIGH

CVE-2026-57510 — SuperPlane: before 0.27.0 contains a broken object-level authorization vulnerability in the CanvasService gRPC handlers

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-57510

SuperPlane before 0.27.0 contains a broken object-level authorization vulnerability in the CanvasService gRPC handlers that allows authenticated users with viewer-level access to one organization to access resources belonging to other organizations by supplying arbitrary canvas or queue UUIDs without organization scoping. Attackers can read cross-tenant execution history and event payloads containing sensitive secrets, write queue items and canvas events into victim organizat CVSSv3.1 8.8 (HIGH)

CWECWE 639VNDSuperplaneTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
1d ago
2026-07-28 20:17Z
HIGH

CVE-2026-48060 — Litestar: Prior to version 2.20.0, Litestar instances which use a template engine in conjunction with

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-48060

Litestar is an Asynchronous Server Gateway Interface (ASGI) framework. Prior to version 2.20.0, Litestar instances which use a template engine in conjunction with CSRF protection are vulnerable to HTML Injection which can be escalated to Cross Site Scripting due to the contents of the CSRF cookie being excluded from automatic escaping by the template engine when configured inline with documentation recommendations. This issue has been patched in version 2.20.0. CVSSv3.1 8.1 (HIGH)

CWECWE 79VNDLitestarTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
1d ago
2026-07-28 20:17Z
HIGH

CVE-2026-16347 — MikroTik: This deficiency increases the risk that an attacker could eventually obtain valid credentials and

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-16347

MikroTik RouterOS contains a weakness in its API authentication handling that lacks effective safeguards against excessive login attempts. The system does not enforce meaningful rate-limiting, account lockout, or source-based restrictions, allowing repeated authentication failures to proceed without defensive response. In some versions, a fixed per-connection delay is present, but it can be bypassed through concurrent sessions, resulting in continued high-volume attempts. Thi CVSSv3.1 8.8 (HIGH)

CWECWE 307VNDMikrotikTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
1d ago
2026-07-28 19:17Z
HIGH

CVE-2026-7769 — IBM: Sterling B2B Integrator 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-7769

IBM Sterling B2B Integrator 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 and IBM Sterling File Gateway 6.2.0.0 through 6.2.0.5_2, 6.2.1.0 through 6.2.1.1_2, and 6.2.2.0 through 6.2.2.0_1 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify, or delete information in the back-end database. CVSSv3.1 8.1 (HIGH)

CWECWE 89VNDIbmTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
1d ago
2026-07-28 19:17Z
HIGH

CVE-2026-49258 — Nebula: In versions 0.3.5 and below, the web UI (/ui/*) does not apply the per-operator

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-49258

Nebula Mesh is a self-hosted control plane for the Slack Nebula mesh VPN. In versions 0.3.5 and below, the web UI (/ui/*) does not apply the per-operator CA scoping employed by the JSON API. This was partially addressed by GHSA-598g-h2vc-h5vg, but the changes were not implemented in the web read/mutation surface. Any authenticated non-admin operator (for example, one created via self-registration or OIDC) can access resources belonging to other operators. The host create/edit CVSSv3.1 8.8 (HIGH)

CWECWE 862CWECWE 639VNDNebulaTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
1d ago
2026-07-28 19:17Z
HIGH

CVE-2026-48396 — Bridge: is affected by an Incorrect Authorization vulnerability that could result in arbitrary code

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-48396

Bridge is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed. CVSSv3.1 8.6 (HIGH)

CWECWE 863VNDBridgeTYPVulnerability
8.6
CVSS v3.1
93
Edit Score
1d ago
2026-07-28 19:17Z
HIGH

CVE-2026-48395 — Bridge: is affected by an Untrusted Search Path vulnerability that could result in arbitrary

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-48395

Bridge is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. An attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed. CVSSv3.1 8.6 (HIGH)

CWECWE 426VNDBridgeTYPVulnerability
8.6
CVSS v3.1
93
Edit Score
1d ago
2026-07-28 19:17Z
HIGH

CVE-2026-48391 — Bridge: is affected by an Untrusted Search Path vulnerability that could result in arbitrary

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-48391

Bridge is affected by an Untrusted Search Path vulnerability that could result in arbitrary code execution in the context of the current user. A low-privileged attacker could exploit this vulnerability to execute arbitrary code. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed. CVSSv3.1 8.2 (HIGH)

CWECWE 426VNDBridgeTYPVulnerability
8.2
CVSS v3.1
91
Edit Score
1d ago
2026-07-28 19:17Z
HIGH

CVE-2026-48390 — Bridge: is affected by an Incorrect Authorization vulnerability that could result in privilege escalation.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-48390

Bridge is affected by an Incorrect Authorization vulnerability that could result in privilege escalation. An attacker could leverage this vulnerability to gain unauthorized read and write access. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed. CVSSv3.1 8.2 (HIGH)

CWECWE 863VNDBridgeTYPVulnerability
8.2
CVSS v3.1
91
Edit Score
1d ago
2026-07-28 19:17Z
HIGH

CVE-2026-16771 — This allows unauthenticated attackers on the LAN to read sensitive configuration data, modify persistent

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-16771

In firmware versions 2.7.7 and earlier, the Arris BGW210‑700 gateway fails to enforce any server‑side authentication on its /cgi-bin/*.ha management endpoints, relying solely on client‑side CSS/JavaScript gating that can be bypassed by any HTTP client. This allows unauthenticated attackers on the LAN to read sensitive configuration data, modify persistent device settings, or trigger backend diagnostic operations. The issue appears systemic across the CGI handler chain. CVSSv3.1 8.8 (HIGH)

CWECWE 306TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
1d ago
2026-07-28 19:17Z
CRIT

CVE-2026-16498 — The terraform-mcp-server before version 1.1.0 is vulnerable to a cross-tenant credential reuse issue in

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-16498

The terraform-mcp-server before version 1.1.0 is vulnerable to a cross-tenant credential reuse issue in the streamable-HTTP stateless transport mode that may allow one user's Terraform token to be used to execute tool calls on behalf of subsequent users. This vulnerability, CVE-2026-16498, is fixed in terraform-mcp-server 1.1.0. CVSSv3.1 10.0 (CRITICAL)

CWECWE 488TYPVulnerability
10.0
CVSS v3.1
100
Edit Score