CVE tracker
395 subscribers
5.73K links
News monitoring: @irnewsagency

Main channel: @orgsecuritygate

Site: SecurityGate.org
Download Telegram
CVE-2026-92905 - Denial of Service Vulnerability

CVE ID :CVE-2026-92905
Published : Sept. 24, 2026, 10:17 a.m. | 1 hour, 2 minutes ago
Description :ZohoCorp ManageEngine EventLog Analyzer and Log360 before build 13071 were vulnerable to a DoS vulnerability that allowed attackers to crash the log collector using malformed syslog packets.
Severity: 5.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-97179 - O2OA Cipher Connection CipherConnectionAction.java list information disclosure

CVE ID :CVE-2026-97179
Published : Sept. 24, 2026, 10:30 a.m. | 49 minutes ago
Description :A security vulnerability has been detected in O2OA up to 9.5.3/10.0.2. This vulnerability affects the function list of the file o2server/x_base_core_project/src/main/java/com/x/base/core/project/connection/CipherConnectionAction.java of the component Cipher Connection Handler. Such manipulation of the argument fileUrl leads to information disclosure. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-79680 - Authentication bypass vulnerability in the password authentication mechanism of the Qt VNC Server module

CVE ID :CVE-2026-79680
Published : Sept. 24, 2026, 10:56 a.m. | 23 minutes ago
Description :Authentication bypass vulnerability in the password authentication mechanism of the Qt VNC Server module. An attacker using a specially modified VNC client that violates the RFB protocol can bypass Qt VNC Server's password authentication and gain unauthorized remote access to the shared application, compromising the confidentiality and integrity of the session.
Severity: 4.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-4638 - Plaintext Password Disclosure via VBScript Sensor Error Message in Paessler PRTG Network Monitor

CVE ID :CVE-2026-4638
Published : Sept. 24, 2026, 10:57 a.m. | 22 minutes ago
Description :PRTG Network Monitor before version 26.2.120.1449 ships a demo EXE/Script sensor that multiplies two integer parameters using cscript.exe. If a non-numeric value is passed instead, cscript.exe raises a 'Type mismatch' runtime error that includes the offending parameter value in plaintext. PRTG provides a documented placeholder variable, %windowspassword, which resolves to the configured Windows/domain password used by PRTG and can be passed as a sensor parameter.  Any PRTG user who is not restricted to read-only access and is permitted to create sensors (the default for non-read-only users) can pass %windowspassword as an argument to the demo VBScript sensor, triggering the type-mismatch error and causing PRTG to display the plaintext password in the sensor's error output.
Severity: 7.1 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-77874 - IBM Enterprise Build of Quarkus is affected by multiple vulnerabilities

CVE ID :CVE-2026-77874
Published : Sept. 24, 2026, 2:22 p.m. | 58 minutes ago
Description :IBM Enterprise Build of Quarkus 3.27.1 through 3.27.5.SP1, and 3.33.1 through 3.33.3.SP1 is vulnerable to SQL injection. A remote unauthenticated attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify, or delete information in the back-end database.
Severity: 8.6 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-81539 - DataStage on Cloud Pak for Data has several vulnerabilities

CVE ID :CVE-2026-81539
Published : Sept. 24, 2026, 2:23 p.m. | 57 minutes ago
Description :IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of special elements used in an OS command.
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-81545 - DataStage on Cloud Pak for Data has several vulnerabilities

CVE ID :CVE-2026-81545
Published : Sept. 24, 2026, 2:24 p.m. | 56 minutes ago
Description :IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-81547 - DataStage on Cloud Pak for Data has several vulnerabilities

CVE ID :CVE-2026-81547
Published : Sept. 24, 2026, 2:25 p.m. | 55 minutes ago
Description :IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to path traversal.
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-81548 - DataStage on Cloud Pak for Data has several vulnerabilities

CVE ID :CVE-2026-81548
Published : Sept. 24, 2026, 2:26 p.m. | 54 minutes ago
Description :IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-81549 - DataStage on Cloud Pak for Data has several vulnerabilities

CVE ID :CVE-2026-81549
Published : Sept. 24, 2026, 2:27 p.m. | 53 minutes ago
Description :IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to obtain sensitive information due to improper validation of the X-Forwarded-Proto header.
Severity: 9.6 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-81552 - DataStage on Cloud Pak for Data has several vulnerabilities

CVE ID :CVE-2026-81552
Published : Sept. 24, 2026, 2:28 p.m. | 52 minutes ago
Description :IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of environment variables.
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-82093 - DataStage on Cloud Pak for Data has several vulnerabilities

CVE ID :CVE-2026-82093
Published : Sept. 24, 2026, 2:29 p.m. | 52 minutes ago
Description :IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary code due to unsafe deserialization of untrusted data.
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-82094 - DataStage on Cloud Pak for Data has several vulnerabilities

CVE ID :CVE-2026-82094
Published : Sept. 24, 2026, 2:29 p.m. | 51 minutes ago
Description :IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to traverse directories on the system due to improper limitation of a pathname to a restricted directory.
Severity: 7.1 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-97404 - OpenStack Zaqar Authentication Bypass Vulnerability

CVE ID :CVE-2026-97404
Published : Sept. 24, 2026, 2:34 p.m. | 46 minutes ago
Description :In OpenStack Zaqar before 22.0.2, WSGI transport mishandles the URL-Signature header. By sending a request with an empty URL-Signature header, an unauthenticated remote attacker who knows a target project's UUID may bypass both Keystone authentication and pre-signed URL verification, resulting in the ability to read, enumerate, create, and delete that project's queues, messages, claims, and subscriptions. By additionally claiming an administrative role, the attacker may also perform administrative operations, such as managing pools and flavors in admin_mode deployments. Only deployments using the WSGI transport with an authentication strategy configured are affected; the websocket transport is not affected.
Severity: 9.2 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-77703 - SSH Host Key Verification Bypass in HAVELSAN's Liman Render Engine

CVE ID :CVE-2026-77703
Published : Sept. 24, 2026, 2:38 p.m. | 42 minutes ago
Description :Key exchange without entity authentication vulnerability in HAVELSAN Inc. Liman Render Engine allows Adversary in the Middle (AiTM). This issue affects Liman Render Engine: from 1.0 before 1.2-75.
Severity: 5.9 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-65422 - Genetec Security Center Media Gateway API Authorization Bypass

CVE ID :CVE-2026-65422
Published : Sept. 24, 2026, 2:39 p.m. | 42 minutes ago
Description :A flaw in the authorization mechanism for Media Gateway API in Genetec Security Center may allow a user with no playback privileges to generate video thumbnails.
Severity: 6.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-77707 - TLS Certificate Validation Disabled for Keycloak Connections in HAVELSAN's Liman Render Engine

CVE ID :CVE-2026-77707
Published : Sept. 24, 2026, 2:41 p.m. | 39 minutes ago
Description :Improper certificate validation vulnerability in HAVELSAN Inc. Liman Render Engine allows Adversary in the Middle (AiTM). This issue affects Liman Render Engine: from 1.0 before 1.2-75.
Severity: 5.9 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-97224 - Excalidraw Imported File restore.ts cross site scripting

CVE ID :CVE-2026-97224
Published : Sept. 24, 2026, 2:45 p.m. | 35 minutes ago
Description :A vulnerability was detected in Excalidraw up to 0.18.1. The impacted element is an unknown function of the file packages/excalidraw/data/restore.ts of the component Imported File Handler. Performing a manipulation of the argument customData.generationData.html results in cross site scripting. The attack is possible to be carried out remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-90959 - Pulpcore: pulpcore: file:// scheme allowlist bypass in content upload file_url field enables arbitrary file read and pulp container registry signing key theft

CVE ID :CVE-2026-90959
Published : Sept. 24, 2026, 2:49 p.m. | 31 minutes ago
Description :A path traversal vulnerability was found in pulpcore. The content upload API accepts a 'file_url' parameter that allows users with file repository privileges to specify a local file URL for Pulp to download and store. A URL scheme validation check uses a string prefix comparison that only rejects URLs beginning with 'file://', but Python's URL parser recognizes the 'file:' scheme without double slashes, creating a mismatch between what is validated and what is dispatched to the file downloader. An authenticated user with low-privilege repository permissions can supply a specially crafted URL using relative path traversal sequences to read any file accessible to the Pulp server process. In deployments that include Pulp Container, successful exploitation allows an attacker to read the container registry token signing private key and forge bearer tokens, granting unauthorized access to all private container repositories in the affected registry.
Severity: 8.1 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-97362 - HFS2 2.4.0 Unauthenticated Denial of Service via Hung Serving Thread

CVE ID :CVE-2026-97362
Published : Sept. 24, 2026, 2:49 p.m. | 31 minutes ago
Description :HFS2 version 2.4.0 and earlier contains a denial of service vulnerability that allows unauthenticated attackers to cause a complete and persistent loss of availability by sending a single crafted request. Attackers can trigger a hung serving thread that enters a busy loop, rendering the entire file server unresponsive to all clients without self-recovery until an operator manually restarts the service.
Severity: 8.7 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-13465 - EL3 Stack Buffer Overflow in FCS HKDF Request

CVE ID :CVE-2026-13465
Published : Sept. 24, 2026, 2:51 p.m. | 30 minutes ago
Description :Stack-based buffer overflow vulnerability in Altera Trusted Firmware on HPS allows Exploitation of Improperly Configured or Implemented Memory Protections. This issue affects Trusted Firmware: through socfpga_v2.14.0.
Severity: 8.3 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...