CVE tracker
394 subscribers
5.72K links
News monitoring: @irnewsagency

Main channel: @orgsecuritygate

Site: SecurityGate.org
Download Telegram
CVE-2026-6935 - Multiple Vulnerabilities in IBM Concert Software

CVE ID :CVE-2026-6935
Published : Sept. 23, 2026, 8:55 p.m. | 22 minutes ago
Description :IBM Concert 1.0.0 through 3.0.0 invokes operating system commands without fully qualifying executable paths or adequately restricting search path resolution. As a result, an attacker with local system access can manipulate the search path environment to execute untrusted or malicious code.
Severity: 7.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-80379 - DataStage on Cloud Pak for Data has several vulnerabilities

CVE ID :CVE-2026-80379
Published : Sept. 23, 2026, 8:55 p.m. | 21 minutes ago
Description :IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-80412 - DataStage on Cloud Pak for Data has several vulnerabilities

CVE ID :CVE-2026-80412
Published : Sept. 23, 2026, 8:56 p.m. | 20 minutes ago
Description :IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary code due to improper escaping of connector property values during OSH script generation.
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-80425 - DataStage on Cloud Pak for Data has several vulnerabilities

CVE ID :CVE-2026-80425
Published : Sept. 23, 2026, 8:57 p.m. | 19 minutes ago
Description :IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-96603 - Abdurrab5 online-makeup-store Admin functions.php confirm_user authorization

CVE ID :CVE-2026-96603
Published : Sept. 23, 2026, 10:17 p.m. | 3 hours, 1 minute ago
Description :A vulnerability has been found in Abdurrab5 online-makeup-store. Affected is the function confirm_logged_in/confirm_user of the file functions.php of the component Admin Handler. Such manipulation of the argument adminid leads to missing authorization. The attack may be performed from remote. The exploit has been disclosed to the public and may be used. This product utilizes a rolling release system for continuous delivery, and as such, version information for affected or updated releases is not disclosed. The vendor was contacted early about this disclosure.
Severity: 7.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-96604 - SoftNews Media Group DataLife Engine Search search.php strip_data sql injection

CVE ID :CVE-2026-96604
Published : Sept. 23, 2026, 10:17 p.m. | 3 hours, 1 minute ago
Description :A vulnerability was identified in SoftNews Media Group DataLife Engine 18.0. This affects the function strip_data of the file engine/modules/search.php of the component Search Module. The manipulation of the argument story leads to sql injection. The attack can be initiated remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 7.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-57168 - Rejected reason: ** REJECT ** DO NOT USE THIS CAND

CVE ID :CVE-2026-57168
Published : Sept. 23, 2026, 11:17 p.m. | 2 hours ago
Description :Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2026-56120. Reason: This candidate is a duplicate of CVE-2026-56120. Notes: All CVE users should reference CVE-2026-56120 instead of this candidate.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-59980 - hpack: Unbounded variable integer decoding can cause run-away computation on malformed input

CVE ID :CVE-2026-59980
Published : Sept. 23, 2026, 11:17 p.m. | 2 hours ago
Description :hpack is an HTTP/2 Header Encoding for Python. Prior to version 4.2.0, unbounded variable integer decoding can cause run-away computation on malformed input leading to O(n^2) runtime, effectively blocking further processing with large enough unsanitized input. A fix is available in python-hyper/hpack v4.2.0 to restricted variable integer decoding to uint32 to prevent run-away computation. As a workaround, sanitize input to hpack decoder for long sequences of `0xFF` values to prevent malicious use.
Severity: 6.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-70125 - Microsoft Outlook Remote Code Execution Vulnerability

CVE ID :CVE-2026-70125
Published : Sept. 23, 2026, 11:18 p.m. | 1 hour, 59 minutes ago
Description :Microsoft Outlook Remote Code Execution Vulnerability
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-96606 - LB-Link BL-CPE600EU Configuration Backup Mifi_config.bin information disclosure

CVE ID :CVE-2026-96606
Published : Sept. 23, 2026, 11:18 p.m. | 1 hour, 59 minutes ago
Description :A security flaw has been discovered in LB-Link BL-CPE600EU 5.8.13. This vulnerability affects unknown code of the file Mifi_config.bin of the component Configuration Backup Handler. The manipulation results in information disclosure. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-96676 - Fast FAC1900R uhttpd get_alias_name stack-based overflow

CVE ID :CVE-2026-96676
Published : Sept. 23, 2026, 11:18 p.m. | 1 hour, 59 minutes ago
Description :A vulnerability was identified in Fast FAC1900R 20190827_2.0.2. The impacted element is the function get_alias_name of the component uhttpd. Such manipulation leads to stack-based buffer overflow. The attack may be performed from remote. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 6.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-96678 - weiqingwen spring-boot-forum Avatar Upload NewUserFormValidator.java validate path traversal

CVE ID :CVE-2026-96678
Published : Sept. 23, 2026, 11:18 p.m. | 1 hour, 59 minutes ago
Description :A security vulnerability has been detected in weiqingwen spring-boot-forum up to 538eecc3c6b85fdf0768ab4e8354b48c0c17d94f. Affected is the function validate of the file src/main/java/com/qingwenwei/util/NewUserFormValidator.java of the component Avatar Upload. The manipulation of the argument Username leads to path traversal. The attack can be initiated remotely. The exploit has been disclosed publicly and may be used. Continious delivery with rolling releases is used by this product. Therefore, no version details of affected nor updated releases are available. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 6.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-96680 - ByteDance Coze Scraper Extension External Message index.js chrome.runtime.onMessageExternal.addListener authorization

CVE ID :CVE-2026-96680
Published : Sept. 23, 2026, 11:18 p.m. | 1 hour, 59 minutes ago
Description :A vulnerability was detected in ByteDance Coze Scraper Extension up to 2.0.2. Affected by this vulnerability is the function chrome.runtime.onMessageExternal.addListener of the file static/background/index.js of the component External Message Handler. The manipulation of the argument body.url/paginationConfig/xPathConfig/body.urls/xPaths results in missing authorization. The attack can be launched remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 5.0 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-96763 - kvcache-ai mooncake MountSegment Request Processing segment.cpp access control

CVE ID :CVE-2026-96763
Published : Sept. 24, 2026, midnight | 1 hour, 17 minutes ago
Description :A security flaw has been discovered in kvcache-ai mooncake up to 0.3.12/0.3.13.post1/0.3.14-rc1. This issue affects the function ScopedSegmentAccess::MountSegment of the file segment.cpp of the component MountSegment Request Processing. Performing a manipulation results in improper access controls. The attack is possible to be carried out remotely. The exploit has been released to the public and may be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-96764 - kvcache-ai mooncake Regular Expression GetReplicaListByRegex allocation of resources

CVE ID :CVE-2026-96764
Published : Sept. 24, 2026, 12:15 a.m. | 1 hour, 2 minutes ago
Description :A weakness has been identified in kvcache-ai mooncake up to 0.3.12/0.3.14-rc1. Impacted is the function MasterService::GetReplicaListByRegex of the component Regular Expression Handler. Executing a manipulation can lead to allocation of resources. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-82370 - Unauthenticated remote command injection in the Brocade SANnav orchestrator HTTP service

CVE ID :CVE-2026-82370
Published : Sept. 24, 2026, 12:17 a.m. | 1 hour ago
Description :Unauthenticated remote command injection in the Brocade SANnav orchestrator HTTP service permits network-adjacent attackers to execute arbitrary administrative switch CLI commands and issue container management instructions. This could allow an attacker to alter Fibre Channel fabric switch configurations or manipulate application container runtimes. This vulnerability affects Brocade SANnav versions before 3.0.1a.
Severity: 8.6 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-89078 - Double Free in GitLab

CVE ID :CVE-2026-89078
Published : Sept. 24, 2026, 12:17 a.m. | 1 hour ago
Description :GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to execute arbitrary code on the GitLab server due to a double free issue when parsing a specially crafted regular expression in a CI/CD configuration.
Severity: 9.9 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-92470 - Missing Authorization in GitLab

CVE ID :CVE-2026-92470
Published : Sept. 24, 2026, 12:17 a.m. | 1 hour ago
Description :GitLab has remediated an issue in GitLab EE affecting all versions from 18.7 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to access sensitive CI/CD variable values from debug-mode job traces through the Duo AI troubleshooting feature due to missing authorization checks.
Severity: 7.7 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-92529 - Incorrect Authorization in GitLab

CVE ID :CVE-2026-92529
Published : Sept. 24, 2026, 12:17 a.m. | 1 hour ago
Description :GitLab has remediated an issue in GitLab EE affecting all versions from 19.1 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user with developer-role permissions to bypass admin-configured AI tool governance controls for workflows in namespaces they do not control due to improper authorization checks.
Severity: 4.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-92530 - Use of Less Trusted Source in GitLab

CVE ID :CVE-2026-92530
Published : Sept. 24, 2026, 12:17 a.m. | 1 hour ago
Description :GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.1 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under certain conditions could have allowed an authenticated user to spoof merge request authorship and attribute content to arbitrary existing users on the target instance due to improper reliance on ephemeral cache state during Direct Transfer imports.
Severity: 4.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-92628 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') in GitLab

CVE ID :CVE-2026-92628
Published : Sept. 24, 2026, 12:17 a.m. | 1 hour ago
Description :GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 19.2.7, 19.3 before 19.3.3, and 19.4 before 19.4.1 that under a race condition, the MCP search tool's shared state handling could have caused search results to be returned under an incorrect user context.
Severity: 3.1 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...