CVE tracker
386 subscribers
5.42K links
News monitoring: @irnewsagency

Main channel: @orgsecuritygate

Site: SecurityGate.org
Download Telegram
CVE-2026-39925 - Rejected reason: This CVE ID has been rejected or

CVE ID :CVE-2026-39925
Published : Aug. 14, 2026, 8:16 p.m. | 1 hour, 28 minutes ago
Description :Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-64887 - Airwall - Hardcoded Secrets

CVE ID :CVE-2026-64887
Published : Aug. 14, 2026, 8:16 p.m. | 1 hour, 28 minutes ago
Description :Use of hard-coded cryptographic key vulnerability in Johnson Controls Airwall allows : Cryptanalytic Attack. This issue affects Airwall: before 4.1.
Severity: 7.0 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-67365 - Joomla Extension - icagenda.com - Unauthenticated SQL injection in iCagenda < 4.0.0-4.0.11

CVE ID :CVE-2026-67365
Published : Aug. 14, 2026, 8:16 p.m. | 1 hour, 28 minutes ago
Description :Joomla Extension - icagenda.com - Unauthenticated SQL injection in iCagenda < 4.0.0-4.0.11 - Unauthenticated SQL injection in mod_icagenda_calendar (iCagenda), reachable via com_ajax with no session, token or account.
Severity: 9.2 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-71571 - Joomla Extension - icagenda.com - Authenticated SQL injection via unescaped numeric filter in iCagenda < 2.0.0-4.0.11

CVE ID :CVE-2026-71571
Published : Aug. 14, 2026, 8:16 p.m. | 1 hour, 28 minutes ago
Description :Joomla Extension - icagenda.com - Authenticated SQL injection via unescaped numeric filter in iCagenda < 2.0.0-4.0.11 - Backend operators with permissions to access iCagenda could inject SQL.
Severity: 8.6 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-73680 - Cockpit CMS 2.14.0 Authenticated Command Injection via FFmpeg Filename

CVE ID :CVE-2026-73680
Published : Aug. 14, 2026, 8:16 p.m. | 1 hour, 28 minutes ago
Description :Cockpit CMS 2.14.0 and prior contains a command injection vulnerability in the FFmpeg integration that allows authenticated users with only the assets/upload permission to execute arbitrary commands by uploading a video file with a shell metacharacter-laden filename. The unsanitized filename is interpolated into a shell command executed via Process::fromShellCommandline() before the slugify() sanitizer runs, enabling injected shell metacharacters such as backticks, $(), and semicolons to escape the FFmpeg command context and execute as the web-server user.
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-50523 - Microsoft PowerShell Remote Code Execution Vulnerability

CVE ID :CVE-2026-50523
Published : Aug. 14, 2026, 9:17 p.m. | 27 minutes ago
Description :Improper neutralization of special elements used in a command ('command injection') in Microsoft PowerShell allows an authorized attacker to execute code locally.
Severity: 7.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-67366 - Joomla Extension - icagenda.com - CSRF on frontend registration actions in iCagenda < 2.0.0-4.0.11

CVE ID :CVE-2026-67366
Published : Aug. 14, 2026, 9:17 p.m. | 27 minutes ago
Description :Joomla Extension - icagenda.com - CSRF on frontend registration actions in iCagenda < 2.0.0-4.0.11 - Multiple state changing operations in the frontend are callable without a CSRF token check.
Severity: 5.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-71570 - Joomla Extension - icagenda.com - ACL bypass allowing arbitrary user enumeration < 2.0.0-4.0.11

CVE ID :CVE-2026-71570
Published : Aug. 14, 2026, 9:17 p.m. | 27 minutes ago
Description :Joomla Extension - icagenda.com - ACL bypass allowing arbitrary user enumeration < 2.0.0-4.0.11 - A backend operator granted access scoped to `com_icagenda` only could enumerate Joomla user profiles.
Severity: 5.1 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-73682 - Semaphore prior to version 2.18.20 OS Command Injection via git_url Repository Handling

CVE ID :CVE-2026-73682
Published : Aug. 14, 2026, 9:17 p.m. | 27 minutes ago
Description :Semaphore versions prior to 2.18.20 contain an OS command injection (argument injection) vulnerability in the repository git_url handling that allows authenticated users holding the Manager or Owner role on any project to achieve remote code execution on the Semaphore server host. Attackers can craft a malicious git_url value using git's --upload-pack= option to inject and execute arbitrary shell commands when the server processes repository operations using the default cmd_git client.
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-74248 - OpenStack Octavia QoS Policy Unauthorized Resource Locking

CVE ID :CVE-2026-74248
Published : Aug. 14, 2026, 9:17 p.m. | 27 minutes ago
Description :OpenStack Octavia through 18.0.0 mishandles quality of service (QoS) policy authorization. By associating another project's QoS policy with an amphora, an authenticated user may prevent deletion of that policy. All Octavia deployments are affected.
Severity: 4.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-73683 - Laravel Socialite Facebook Provider Authentication Bypass via Nonce Replay

CVE ID :CVE-2026-73683
Published : Aug. 14, 2026, 9:32 p.m. | 12 minutes ago
Description :Laravel Socialite's Facebook provider contains an authentication bypass vulnerability that allows unauthenticated attackers to replay captured OIDC id_tokens by exploiting the missing nonce claim validation in the getUserByOIDCToken() function within FacebookProvider.php. Attackers who obtain a valid, unexpired id_token issued for the same Facebook App ID can submit the captured token to the backend userFromToken() endpoint, bypassing authentication controls because signature, aud, and iss checks pass while no session-bound nonce comparison is performed, resulting in unauthorized access to victim accounts.
Severity: 9.2 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-69414 - Microsoft Defender Elevation of Privilege Vulnerability

CVE ID :CVE-2026-69414
Published : Aug. 14, 2026, 10:17 p.m. | 3 hours, 28 minutes ago
Description :Microsoft is aware of an elevation of privilege in the Microsoft Malware Protection Engine in Microsoft Defender publicly referred to as "ShieldBreak ". We are working to provide a high quality security update that addresses this vulnerability. We will provide information in this CVE when the update is available.
Severity: 7.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-18932 - Rejected reason: This CVE ID has been rejected or

CVE ID :CVE-2026-18932
Published : Aug. 14, 2026, 11:16 p.m. | 2 hours, 29 minutes ago
Description :Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-63649 - OpenVPN Windows Interactive Service Arbitrary Configuration File Loading Vulnerability

CVE ID :CVE-2026-63649
Published : Aug. 14, 2026, 11:16 p.m. | 2 hours, 29 minutes ago
Description :The Windows interactive service in OpenVPN 2.4.0 through 2.6.21 and 2.7_alpha1 through 2.7.5 allows local authenticated users to bypass the trusted configuration directory constraint and load arbitrary configuration files via crafted options that bypass whitelist checks
Severity: 4.1 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-63650 - OpenVPN mbedTLS X.509 Identity Misidentification Vulnerability

CVE ID :CVE-2026-63650
Published : Aug. 14, 2026, 11:16 p.m. | 2 hours, 29 minutes ago
Description :OpenVPN 2.7_alpha1 through 2.7.5 using mbedTLS allows remote authenticated users to be misidentified by ignoring the configured X.509 username identity lookup field
Severity: 2.0 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-74240 - Quay: jwt claim validation bypasses in quay federated robot and sso authentication

CVE ID :CVE-2026-74240
Published : Aug. 14, 2026, 11:16 p.m. | 2 hours, 29 minutes ago
Description :A flaw was found in Red Hat Quay's JWT (JSON Web Token) validation for federated robot accounts and single sign-on (SSO) authentication. Multiple issues related to audience verification and the enforcement of `azp` and `sub` claims were identified. These flaws could allow an attacker with a validly-signed token from the same identity provider to bypass configured security restrictions. This bypass could lead to unauthorized access by circumventing intended audience, subject, or authorized-client limitations.
Severity: 5.4 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-74241 - Quay: ldap referral filter injection in quay external ldap authentication

CVE ID :CVE-2026-74241
Published : Aug. 14, 2026, 11:16 p.m. | 2 hours, 29 minutes ago
Description :A flaw was found in Red Hat Quay's external Lightweight Directory Access Protocol (LDAP) authentication handling. When an LDAP referral is returned during authentication, the system does not properly escape the username input. This allows an attacker to inject LDAP filter metacharacters, enabling user-existence oracle attacks at the referral Directory Name (DN). This could also potentially influence which DN is used for password binding in multi-domain Active Directory environments.
Severity: 4.8 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-74242 - Quay: repository notification uuid idor in quay api

CVE ID :CVE-2026-74242
Published : Aug. 14, 2026, 11:16 p.m. | 2 hours, 29 minutes ago
Description :A flaw was found in Red Hat Quay. An administrator of any repository, by knowing or guessing a target notification's Universally Unique Identifier (UUID), can read the notification configuration, including sensitive details like webhook URLs, Slack tokens, and email addresses. This vulnerability also allows them to trigger test notifications for another repository. This could lead to unauthorized information disclosure and potential misuse of notification services.
Severity: 5.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-74243 - Quay: unauthenticated secscan notification endpoint in quay when psk is unset

CVE ID :CVE-2026-74243
Published : Aug. 14, 2026, 11:16 p.m. | 2 hours, 29 minutes ago
Description :A flaw was found in Red Hat Quay. When the SECURITY_SCANNER_V4_PSK (pre-shared key) is not set, a remote unauthenticated attacker can send POST requests to the security scanner notification endpoint. This allows the attacker to flood the notification queue and inject path traversal characters into Clair API URL paths. The primary consequence is worker resource exhaustion and blind path manipulation on the configured Clair host, potentially leading to a denial of service.
Severity: 6.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-74244 - Quay: stripe webhook accepts forged events without signature verification in quay

CVE ID :CVE-2026-74244
Published : Aug. 14, 2026, 11:16 p.m. | 2 hours, 29 minutes ago
Description :A flaw was found in Red Hat Quay's Stripe billing webhook handler. This vulnerability allows an unauthenticated attacker to forge billing events by sending crafted JSON requests to the `/webhooks/stripe` endpoint without validating the Stripe-Signature header. Successful exploitation can lead to the unauthorized resetting of a namespace's build quota to its maximum and trigger unsolicited billing emails to namespace administrators.
Severity: 5.9 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-74245 - Quay: unauthenticated exported logs download in quay

CVE ID :CVE-2026-74245
Published : Aug. 14, 2026, 11:16 p.m. | 2 hours, 29 minutes ago
Description :A flaw was found in Red Hat Quay's exported logs feature. An unauthenticated attacker with a valid file ID could download exported action logs without proper authorization. While file IDs are complex, they can be intercepted from plaintext email or webhook callbacks. This vulnerability leads to information disclosure, potentially exposing sensitive data such as usernames, email addresses, IP addresses, and action-specific metadata.
Severity: 5.9 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...