2w ago
2026-08-28 22:16Z
CRIT

CVE-2026-51663 — Incorrect: access control in the getWiFiApcliScan function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-51663

Incorrect access control in the getWiFiApcliScan function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to trigger wireless scans and retrieve AP-client scan results via sending a crafted POST request to /cgi-bin/cstecgi.cgi. CVSSv3.1 9.8 (CRITICAL) · EPSS 8th percentile

CWECWE 284TYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-08-28 22:16Z
CRIT

CVE-2026-51661 — Incorrect: access control in the getPortForwardRules function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-51661

Incorrect access control in the getPortForwardRules function of TOTOLINK T6 4.1.5cu.748_B20211015 allows unauthenticated attackers to obtain port-forwarding rules via sending a crafted POST request to /cgi-bin/cstecgi.cgi. CVSSv3.1 9.1 (CRITICAL) · EPSS 7th percentile

CWECWE 284TYPVulnerability
9.1
CVSS v3.1
96
Edit Score
2w ago
2026-08-28 22:16Z
CRIT

CVE-2026-3627 — IBM: Concert 1.0.0 through 2.3.1 is vulnerable to SQL injection.

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-3627

IBM Concert 1.0.0 through 2.3.1 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify, or delete information in the back-end database. CVSSv3.1 9.1 (CRITICAL)

VNDIbmTYPVulnerability
9.1
CVSS v3.1
96
Edit Score
2w ago
2026-08-28 22:16Z
CRIT

CVE-2026-19295 — IBM: Langflow OSS 1.0.0 through 1.11.1 allows an authenticated attacker to execute arbitrary operating

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-19295

IBM Langflow OSS 1.0.0 through 1.11.1 allows an authenticated attacker to execute arbitrary operating system commands in the server process by saving a flow with a crafted type field value and triggering a build of a wrapper flow that references it. This allowed privilege escalation from "authenticated flow user" to arbitrary OS-level command execution under the server process identity, bypassing the LANGFLOW_ALLOW_CUSTOM_COMPONENTS=false policy control. CVSSv3.1 9.9 (CRITICAL)

CWECWE 95VNDIbmTYPVulnerability
9.9
CVSS v3.1
100
Edit Score
2w ago
2026-08-28 22:16Z
CRIT

CVE-2026-19286 — IBM: Langflow OSS 1.0.0 through 1.11.1 could allow a remote attacker to execute arbitrary

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-19286

IBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote attacker to execute arbitrary code due to improper enforcement of security restrictions on the A2A public endpoint. CVSSv3.1 9.8 (CRITICAL)

CWECWE 94VNDIbmTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-08-28 22:16Z
HIGH

CVE-2026-18904 — IBM: Langflow OSS 1.0.0 through 1.11.1 could allow a remote attacker to obtain sensitive

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-18904

IBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote attacker to obtain sensitive information and inject unauthorized messages due to a namespace collision between user identifiers. CVSSv3.1 8.2 (HIGH)

CWECWE 639VNDIbmTYPVulnerability
8.2
CVSS v3.1
91
Edit Score
2w ago
2026-08-28 22:16Z
HIGH

CVE-2026-18891 — IBM: Langflow OSS 1.0.0 through 1.11.1 could allow a remote attacker to execute arbitrary

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-18891

IBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote attacker to execute arbitrary flows and access sensitive information due to improper authentication. CVSSv3.1 8.2 (HIGH)

CWECWE 287VNDIbmTYPVulnerability
8.2
CVSS v3.1
91
Edit Score
728 × 90 / responsive · programmatic ad slot
2w ago
2026-08-28 22:16Z
HIGH

CVE-2026-18729 — IBM: Langflow OSS 1.0.0 through 1.11.1 could allow a remote authenticated attacker to execute

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-18729

IBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote authenticated attacker to execute arbitrary code due to improper control of generation of code. CVSSv3.1 8.8 (HIGH)

CWECWE 94VNDIbmTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2w ago
2026-08-28 22:16Z
CRIT

CVE-2026-18527 — IBM: Administration Runtime Expert for i 1R1M0 IBM Application Runtime Expert (ARE) for i

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-18527

IBM Administration Runtime Expert for i 1R1M0 IBM Application Runtime Expert (ARE) for i could allow a remote attacker to gain elevated privileges, caused by ARE GUI component processing. An unauthenticated attacker can exploit this vulnerability to execute actions under another user's authenticated profile gaining elevated privileges on the IBM i system. CVSSv3.1 9.9 (CRITICAL)

CWECWE 384VNDIbmTYPVulnerability
9.9
CVSS v3.1
100
Edit Score
2w ago
2026-08-28 20:20Z
CRIT

CVE-2026-82329 — JFrog: Artifactory contains an authentication weakness that, under default configuration, may allow an unauthenticated

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-82329

JFrog Artifactory contains an authentication weakness that, under default configuration, may allow an unauthenticated attacker with network access to obtain administrative privileges. CVSSv3.1 9.8 (CRITICAL)

CWECWE 287VNDJfrogTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-08-28 20:20Z
HIGH

CVE-2026-82291 — HeyForm: before 3.0.0-rc.8 reflects the request Origin header in CORS responses while allowing credentials

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-82291

HeyForm before 3.0.0-rc.8 reflects the request Origin header in CORS responses while allowing credentials, enabling cross-origin requests with authentication. Attackers can execute authenticated GraphQL queries from malicious pages visited by logged-in users to access workspaces, projects, forms, submissions, and respondent data, or modify account settings. CVSSv3.1 8.1 (HIGH)

CWECWE 942VNDHeyformTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2w ago
2026-08-28 20:20Z
HIGH

CVE-2026-82287 — Rybbit: before 2.7.0 contains a CORS misconfiguration vulnerability that allows attackers to bypass origin

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-82287

Rybbit before 2.7.0 contains a CORS misconfiguration vulnerability that allows attackers to bypass origin restrictions by reflecting any request origin in Access-Control-Allow-Origin responses while credentials are enabled. Attackers can issue credentialed cross-origin requests from any website to read analytics data, account information, and perform authenticated state-changing operations as the victim user. CVSSv3.1 8.1 (HIGH)

CWECWE 942VNDRybbitTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2w ago
2026-08-28 20:20Z
HIGH

CVE-2026-82286 — gpt-crawler through 1.5.1 fails to validate the outputFileName parameter in the POST /crawl endpoint

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-82286

gpt-crawler through 1.5.1 fails to validate the outputFileName parameter in the POST /crawl endpoint, allowing unauthenticated attackers to write arbitrary files to any filesystem path. Attackers can supply absolute paths or parent-directory segments to overwrite existing files with content sourced from attacker-controlled URLs. CVSSv3.1 8.6 (HIGH)

CWECWE 22TYPVulnerability
8.6
CVSS v3.1
93
Edit Score
2w ago
2026-08-28 20:20Z
HIGH

CVE-2026-82285 — bisheng through 2.6.0-fix2 contains a server-side request forgery vulnerability in the POST /api/v1/workflow/report/callback endpoint

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-82285

bisheng through 2.6.0-fix2 contains a server-side request forgery vulnerability in the POST /api/v1/workflow/report/callback endpoint that lacks authentication and applies no URL scheme restrictions or host filtering. Unauthenticated attackers can supply arbitrary URLs to enumerate internal network services and cloud metadata endpoints, then retrieve captured responses from object storage using caller-supplied object names. CVSSv3.1 8.2 (HIGH)

CWECWE 918TYPVulnerability
8.2
CVSS v3.1
91
Edit Score
2w ago
2026-08-28 20:20Z
HIGH

CVE-2026-82284 — Quivr: versions through 0.0.322 fail to validate chat ownership in the GET /chat/{chat_id}/history, DELETE

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-82284

Quivr versions through 0.0.322 fail to validate chat ownership in the GET /chat/{chat_id}/history, DELETE /chat/{chat_id}, and POST /chat/{chat_id}/question/answer endpoints. Authenticated attackers can read other users' conversation histories including private knowledge base content, delete arbitrary chats, and inject fabricated messages into other users' conversations. CVSSv3.1 8.1 (HIGH)

CWECWE 639VNDQuivrTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2w ago
2026-08-28 20:20Z
HIGH

CVE-2026-82283 — VoltAgent: through 2.1.20 fails to validate conversation ownership in memory API handlers, allowing authenticated

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-82283

VoltAgent through 2.1.20 fails to validate conversation ownership in memory API handlers, allowing authenticated users to access other users' conversations. Attackers can read, modify, and delete arbitrary conversations and messages by supplying caller-controlled identifiers to memory endpoints. CVSSv3.1 8.1 (HIGH)

CWECWE 639VNDVoltagentTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2w ago
2026-08-28 20:20Z
HIGH

CVE-2026-82282 — Atlantis: through 0.47.1 fails to authenticate the /github-app/setup endpoint, allowing unauthenticated attackers to access

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-82282

Atlantis through 0.47.1 fails to authenticate the /github-app/setup endpoint, allowing unauthenticated attackers to access GitHub App credentials. Attackers can observe or intercept the GitHub redirect during setup to obtain the RSA private key and webhook secret, enabling installation token minting and webhook payload forgery. CVSSv3.1 8.0 (HIGH)

CWECWE 306VNDAtlantisTYPVulnerability
8.0
CVSS v3.1
90
Edit Score
2w ago
2026-08-28 20:20Z
HIGH

CVE-2026-82279 — HyperDX: through 1.10.1 fails to enforce role-based access controls in team management endpoints, allowing

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-82279

HyperDX through 1.10.1 fails to enforce role-based access controls in team management endpoints, allowing any team member to perform administrative actions. Attackers can delete team members including owners, rotate API keys, and rename teams by sending requests to PATCH /team/apiKey, PATCH /team/name, and DELETE /team/member endpoints. CVSSv3.1 8.1 (HIGH)

CWECWE 862VNDHyperdxTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2w ago
2026-08-28 20:20Z
HIGH

CVE-2026-82278 — BISHENG: before 2.6.0 contains a remote code execution vulnerability in the workflow run_once endpoint

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-82278

BISHENG before 2.6.0 contains a remote code execution vulnerability in the workflow run_once endpoint that allows authenticated users to execute arbitrary Python code. Attackers can submit crafted Code node definitions to the POST /api/v1/workflow/run_once endpoint, which executes them with exec() without sandboxing, gaining access to filesystem, credentials, and internal network resources. CVSSv3.1 8.8 (HIGH)

CWECWE 94VNDBishengTYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2w ago
2026-08-28 20:20Z
CRIT

CVE-2026-82277 — Argo: Rollouts dashboard through 1.10.0 binds to all interfaces and exposes mutating Rollout operations

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-82277

Argo Rollouts dashboard through 1.10.0 binds to all interfaces and exposes mutating Rollout operations without authentication, authorization, or CSRF protection. Attackers on the same network can invoke PromoteRollout, AbortRollout, RestartRollout, SetRolloutImage, UndoRollout, and RetryRollout operations across all namespaces accessible to the operator's kubeconfig. CVSSv3.1 9.8 (CRITICAL)

CWECWE 306VNDArgoTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-08-28 20:20Z
HIGH

CVE-2026-82269 — Gophish: Attackers with valid API keys can bypass these security controls and retain full API

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-82269

Gophish through 0.12.1 fails to enforce account lockout and password change requirements in the API authentication middleware. Attackers with valid API keys can bypass these security controls and retain full API access even when their account is locked or password change is required. CVSSv3.1 8.1 (HIGH)

CWECWE 288VNDGophishTYPVulnerability
8.1
CVSS v3.1
91
Edit Score
2w ago
2026-08-28 20:20Z
CRIT

CVE-2026-82266 — Redpanda: through 26.2.2 binds the Admin API to 0.0.0.0:9644 with admin_api_require_auth defaulting to false

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-82266

Redpanda through 26.2.2 binds the Admin API to 0.0.0.0:9644 with admin_api_require_auth defaulting to false, treating unauthenticated requests as superusers. Attackers can reach port 9644 without credentials to create and delete broker accounts, modify cluster configuration, and disrupt partition replication. CVSSv3.1 9.8 (CRITICAL)

CWECWE 306VNDRedpandaTYPVulnerability
9.8
CVSS v3.1
99
Edit Score
2w ago
2026-08-28 20:20Z
HIGH

CVE-2026-82021 — Hermes: Agent 0.18.2 prior to 0.19.0 contains a supply chain vulnerability in its bundled

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-82021

Hermes Agent 0.18.2 prior to 0.19.0 contains a supply chain vulnerability in its bundled MCP catalog that allows a remote attacker to execute arbitrary code by compromising a third-party upstream repository referenced via a mutable branch rather than a pinned commit SHA. An attacker who compromises the upstream repository can propagate malicious code to every host that installs the affected catalog entry, with no further action required by the operator. CVSSv3.1 8.3 (HIGH)

CWECWE 494VNDHermesTYPVulnerability
8.3
CVSS v3.1
92
Edit Score
2w ago
2026-08-28 20:20Z
HIGH

CVE-2026-81849 — Improper limitation of a pathname to a restricted directory in the aws:downloadContent plugin in

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-81849

Improper limitation of a pathname to a restricted directory in the aws:downloadContent plugin in amazon-ssm-agent before 3.3.4515.0 might allow an authenticated remote user whose ssm:SendCommand permission is restricted to the AWS-DownloadContent document, to write arbitrary files outside the intended download directory with root privileges, via crafted object keys in the S3 source the document is directed to retrieve. This issue may lead to arbitrary code execution as root i CVSSv3.1 8.8 (HIGH)

CWECWE 23TYPVulnerability
8.8
CVSS v3.1
94
Edit Score
2w ago
2026-08-28 20:19Z
HIGH

CVE-2026-77586 — MongoDB: In MongoDB Connector for BI, MongoDB object names such as collection, field, and index

NVD (auto-promoted CVEs)·nvd.nist.govCVE-2026-77586

In MongoDB Connector for BI, MongoDB object names such as collection, field, and index names are placed into the quoted identifiers of the DDL text returned by SHOW CREATE statements without escaping the identifier delimiter. A user with permission to write to a sampled MongoDB collection can choose a name that closes the quoted identifier early, so that additional SQL text becomes part of the generated output. If an operator or automated tool later replays that generated sta CVSSv3.1 8.0 (HIGH)

CWECWE 89VNDMongodbTYPVulnerability
8.0
CVSS v3.1
90
Edit Score