2w ago
2026-09-01 20:17Z
HIGH

CVE-2026-73702 — A privilege escalation vulnerability exists in the API of HPE Networking Fabric Composer.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-73702

A privilege escalation vulnerability exists in the API of HPE Networking Fabric Composer. Successful exploitation could allow an authenticated low privilege operator user to escalate their permissions to those of an administrative user, leading to complete system compromise. CVSSv3.1 8.8 (HIGH)

TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2w ago
2026-09-01 20:17Z
CRIT

CVE-2026-73701 — An unauthenticated remote code execution vulnerability exists in the underlying operating system of HPE

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-73701

An unauthenticated remote code execution vulnerability exists in the underlying operating system of HPE Networking Fabric Composer and could be exploited if certain preconditions outside of the attacker's control are met. Successful exploitation of this vulnerability could allow an unauthenticated remote attacker to execute arbitrary code as a privileged user on the underlying operating system, leading to complete compromise of the HPE Networking Fabric Composer host. CVSSv3.1 9.0 (CRITICAL)

TYPVulnerability
9.0
CVSS v3.1
95
Edit Score
2w ago
2026-09-01 20:17Z
CRIT

CVE-2026-73700 — A vulnerability in the web-based management interface of HPE Networking Fabric Composer could allow

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-73700

A vulnerability in the web-based management interface of HPE Networking Fabric Composer could allow an authenticated low privilege operator user to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface. A successful exploit could allow an attacker to execute arbitrary script code in a victim's browser in the context of the affected interface. CVSSv3.1 9.0 (CRITICAL)

TYPVulnerability
9.0
CVSS v3.1
95
Edit Score
2w ago
2026-09-01 20:17Z
HIGH

CVE-2026-72649 — Deserialization: of Untrusted Data (CWE-502) in the Elasticsearch machine learning component can lead to

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-72649

Deserialization of Untrusted Data (CWE-502) in the Elasticsearch machine learning component can lead to remote code execution via Object Injection (CAPEC-586). A specially crafted trained model artifact could cause attacker-controlled logic to execute with a materially broader system-call surface than intended. Exploitation requires an authenticated user with sufficient privileges to create and deploy trained models. CVSSv3.1 8.8 (HIGH)

CWECWE 502TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2w ago
2026-09-01 20:17Z
HIGH

CVE-2026-63137 — Incorrect: Authorization (CWE-863) in Kibana can lead to privilege escalation via Exploiting Incorrectly Configured

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-63137

Incorrect Authorization (CWE-863) in Kibana can lead to privilege escalation via Exploiting Incorrectly Configured Access Control Security Levels (CAPEC-180). A user holding workflow edit permissions could cause scheduled workflow executions to run with the privileges of a different, higher-privileged user, allowing access to and modification of data beyond their own authorization scope. CVSSv3.1 8.3 (HIGH)

CWECWE 863TYPVulnerability
8.3
CVSS v3.1
92
Edit Score
2w ago
2026-09-01 20:17Z
CRIT

CVE-2026-19766 — An authentication bypass vulnerability exists in the underlying operating system of HPE Networking Fabric

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-19766

An authentication bypass vulnerability exists in the underlying operating system of HPE Networking Fabric Composer. Successful exploitation could allow an unauthenticated adjacent attacker to execute arbitrary code as a privileged user on the underlying operating system, leading to complete compromise of the AFC host. CVSSv3.1 9.6 (CRITICAL)

TYPVulnerability
9.6
CVSS v3.1
98
Edit Score
2w ago
2026-09-01 19:17Z
HIGH

CVE-2026-8712 — Wyoming: before 1.10.2 contains a server-side request forgery vulnerability that allows unauthenticated attackers with

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-8712

Wyoming before 1.10.2 contains a server-side request forgery vulnerability that allows unauthenticated attackers with network access to force outbound connections to arbitrary targets by supplying a malicious `uri` query parameter to the HTTP API. Attackers can pass arbitrary `tcp://` or `unix://` URIs to affected endpoints including /api/info, /api/speech-to-text, and /api/text-to-speech to override the server-configured backend and redirect connections to attacker-chosen ho CVSSv3.1 8.3 (HIGH)

CWECWE 918VNDWyomingTYPVulnerability
8.3
CVSS v3.1
92
Edit Score
728 × 90 / responsive · programmatic ad slot
2w ago
2026-09-01 18:17Z
CRIT

CVE-2026-52111 — An issue in fast-note-sync-service <=2.13.7 allows a remote attacker to escalate privileges via the

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-52111

An issue in fast-note-sync-service <=2.13.7 allows a remote attacker to escalate privileges via the admin configuration endpoint exposes authTokenKey CVSSv3.1 9.8 (CRITICAL)

CWECWE 284TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-09-01 18:17Z
HIGH

CVE-2026-51974 — An eval() injection vulnerability in the get_list function in modules/meta_parser.py in lllyasviel Fooocus 2.1.854

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-51974

An eval() injection vulnerability in the get_list function in modules/meta_parser.py in lllyasviel Fooocus 2.1.854 through 2.5.5 allows remote attackers to execute arbitrary Python code via a crafted styles payload in the EXIF metadata of an uploaded image file. CVSSv3.1 8.8 (HIGH)

CWECWE 94TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2w ago
2026-09-01 18:17Z
CRIT

CVE-2026-19593 — OpenAI: Codex Desktop for Windows and macOS automatically inspected Git metadata and working-tree status

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-19593

OpenAI Codex Desktop for Windows and macOS automatically inspected Git metadata and working-tree status when a user opened a workspace. If the workspace contains a repository with preserved attacker-controlled .git/config, the attr.tree setting and a configured clean or process filter can cause Git to run an attacker-controlled program. The program runs outside Codex's command sandbox with the signed-in user's privileges, without a workspace-trust prompt, command approval, or CVSSv3.1 9.8 (CRITICAL)

CWECWE 15VNDOpenaiTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-09-01 18:17Z
HIGH

CVE-2026-19591 — OpenAI: If filesystem protections permit the write, the command can modify Codex's configuration.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-19591

OpenAI Codex CLI for Windows, macOS, and Linux and Codex Desktop for Windows and macOS misclassified certain PowerShell commands as safe because their command-safety parser interpreted PowerShell's stop-parsing token (--%) differently than PowerShell itself. If a user opens an attacker-prepared repository and Codex follows its instructions, Codex can run a file-writing Git command without requesting user approval. On macOS and Linux, exploitation additionally requires separat CVSSv3.1 8.8 (HIGH)

CWECWE 150VNDOpenaiTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2w ago
2026-09-01 17:17Z
HIGH

CVE-2026-58566 — Dell: PowerStore, an Incorrect Authorization vulnerability.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-58566

Dell PowerStore, an Incorrect Authorization vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges. CVSSv3.1 8.8 (HIGH)

CWECWE 863VNDDellTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2w ago
2026-09-01 17:17Z
HIGH

CVE-2026-51956 — Broken: A Broken Object Level Authorization vulnerability exists in Grashjs Atlas CMMS prior to v1.6.0.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-51956

A Broken Object Level Authorization vulnerability exists in Grashjs Atlas CMMS prior to v1.6.0. An authenticated user from one tenant can read and modify another tenant's company record by changing only the numeric ID in the /company/{id} endpoint. The application does not enforce tenant-level ownership checks when accessing or updating company objects, allowing cross-tenant access and modification of company profile data. CVSSv3.1 8.1 (HIGH)

CWECWE 284VNDBrokenTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2w ago
2026-09-01 17:17Z
CRIT

CVE-2026-51934 — Buffer: Overflow vulnerability in Shenzhen Jixiang Tengda Technology Co., Ltd.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-51934

Buffer Overflow vulnerability in Shenzhen Jixiang Tengda Technology Co., Ltd. Tenda A18 v.15.13.07.09 allows a remote attacker to execute arbitrary code via the fromSetCmdlineRun function CVSSv3.1 9.8 (CRITICAL)

CWECWE 120VNDBufferTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-09-01 16:17Z
INFO

v9.7.0-rc2

BloodHound releases·github.com

BloodHound v9.7.0-rc2 release candidate published with minor maintenance updates including migration for default support bundle and artifact cleanup, and a cherry-pick of DAWGS v0.8.0 dependency.

SWBloodhoundVNDSpecteropsTYPTool
15
Edit Score
2w ago
2026-09-01 16:17Z
HIGH

CVE-2026-84268 — This issue allows a malicious server to corrupt adjacent heap memory in the gvfsd-sftp

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84268

A flaw was found in the SFTP backend in gvfs. When mounting a share and reading a file, a malicious SFTP server can cause read_reply() to process a length that exceeds the size requested by the client. The function does not verify the server-provided length against the allocated buffer size, causing the operation to write past the intended boundaries. This issue allows a malicious server to corrupt adjacent heap memory in the gvfsd-sftp process, resulting in a denial of servi CVSSv3.1 8.8 (HIGH)

CWECWE 122TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2w ago
2026-09-01 16:17Z
HIGH

CVE-2026-84203 — Memos: versions 0.26.0 through 0.30.0 fail to revoke refresh tokens when a user changes

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84203

Memos versions 0.26.0 through 0.30.0 fail to revoke refresh tokens when a user changes their password, allowing attackers to maintain account access. An attacker with a stolen refresh token can call the RefreshToken RPC to obtain new access tokens and rotate the refresh token indefinitely, bypassing the password change security measure. CVSSv3.1 8.1 (HIGH)

CWECWE 613VNDMemosTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2w ago
2026-09-01 16:17Z
HIGH

CVE-2026-84202 — ModelScope: uses PyYAML's unsafe yaml.Loader to parse model configuration files, allowing arbitrary code execution

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-84202

ModelScope uses PyYAML's unsafe yaml.Loader to parse model configuration files, allowing arbitrary code execution through Python object construction tags. Attackers can craft malicious model repositories with poisoned configuration files that execute code when loaded by users. CVSSv3.1 8.8 (HIGH)

CWECWE 502VNDModelscopeTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2w ago
2026-09-01 16:17Z
CRIT

CVE-2026-79687 — Dell: PowerStore SDNAS contains a Missing Authentication for Critical Function vulnerability.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79687

Dell PowerStore SDNAS contains a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Filesystem access. CVSSv3.1 9.0 (CRITICAL)

CWECWE 306VNDDellTYPVulnerability
9.0
CVSS v3.1
95
Edit Score
2w ago
2026-09-01 16:17Z
HIGH

CVE-2026-79682 — Dell: PowerStore contains a Command Injection vulnerability.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-79682

Dell PowerStore contains a Command Injection vulnerability. An authenticated user with limited privileges could potentially exploit this vulnerability to execute arbitrary commands with root privileges. CVSSv3.1 8.8 (HIGH)

CWECWE 77VNDDellTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2w ago
2026-09-01 16:17Z
HIGH

CVE-2026-58567 — Dell: PowerStore contains an OS Command Injection vulnerability.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-58567

Dell PowerStore contains an OS Command Injection vulnerability. An authenticated user with limited privileges could potentially exploit this vulnerability to execute arbitrary commands with root privileges. CVSSv3.1 8.8 (HIGH)

CWECWE 78VNDDellTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2w ago
2026-09-01 16:17Z
CRIT

CVE-2026-51770 — Incorrect: access control in the sendToMasterQosConfig function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-51770

Incorrect access control in the sendToMasterQosConfig function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to forward attacker-controlled QoS settings to the master via sending a crafted MQTT message to the cs_broker component.. CVSSv3.1 9.8 (CRITICAL)

CWECWE 284TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-09-01 16:17Z
CRIT

CVE-2026-51769 — Incorrect: access control in the remoteCloudUpdateCheck function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-51769

Incorrect access control in the remoteCloudUpdateCheck function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to restart the cloud update check workflow via sending a crafted MQTT message to the cs_broker component. CVSSv3.1 9.8 (CRITICAL)

CWECWE 284TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-09-01 16:17Z
CRIT

CVE-2026-51767 — Incorrect: access control in the recvClearPairCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-51767

Incorrect access control in the recvClearPairCfg function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to reset pairing state and reboot the device via sending a crafted MQTT message to the cs_broker component. CVSSv3.1 9.8 (CRITICAL)

CWECWE 284TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-09-01 16:16Z
CRIT

CVE-2026-18931 — Use: of Hard-coded Credentials vulnerability in TMT Machine Industry and Trade Ltd.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-18931

Use of Hard-coded Credentials vulnerability in TMT Machine Industry and Trade Ltd. Co. Talassoft Industrial Management Software allows Retrieve Embedded Sensitive Data. This issue affects Talassoft Industrial Management Software: from V.4 before V.16. CVSSv3.1 9.1 (CRITICAL)

CWECWE 798TYPVulnerability
9.1
CVSS v3.1
96
Edit Score