CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2026-8667

    Last Modified: 19 Aug 2026

    GitLab has remediated an issue in GitLab CE/EE affecting all versions from 17.6 before 19.0.6, 19.1 before 19.1.4, and 19.2 before 19.2.2 that under certain conditions could have allowed an authenticated user with developer role to modify certain package registry metadata without the required maintainer-level permissions due to improper authorization checks.

    Published: 12 Aug 2026
    9.6
    Critical

    CVE-2026-73300

    Last Modified: 12 Aug 2026

    Budibase is an open-source low-code platform. Prior to 3.40.0, the MySQL integration component in Budibase is configured with multipleStatements: true, enabling execution of multiple SQL statements in a single query. Attackers can inject malicious SQL commands through user input fields, leading to complete database compromise. This vulnerability is fixed in 3.40.0.

    Published: 12 Aug 2026
    8.5
    High

    CVE-2026-15423

    Last Modified: 19 Aug 2026

    GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.0 before 19.0.6, 19.1 before 19.1.4, and 19.2 before 19.2.2 that under certain conditions could have allowed an authenticated user with developer-role permissions to execute CI/CD pipelines on a protected branch without the required push permissions due to improper authorization in pipeline reference validation.

    Published: 12 Aug 2026
    7.7
    High

    CVE-2026-16627

    Last Modified: 19 Aug 2026

    GitLab has remediated an issue in GitLab CE/EE affecting all versions from 19.2 before 19.2.2 that under certain conditions could have allowed an authenticated user with developer-role permissions to escalate privileges due to improper sanitization of HTML content rendered in a CI job modal.

    Published: 12 Aug 2026
    4.3
    Medium

    CVE-2026-18244

    Last Modified: 19 Aug 2026

    GitLab has remediated an issue in GitLab EE affecting all versions from 17.7 before 19.0.6, 19.1 before 19.1.4, and 19.2 before 19.2.2 that under certain conditions could have allowed an authenticated user to view restricted configuration settings due to improper authorization checks on a group settings page.

    Published: 12 Aug 2026
    6.5
    Medium

    CVE-2026-18728

    Last Modified: 25 Aug 2026

    A flaw was found in open-iscsi. An integer underflow vulnerability in the `iscsiuio` component, specifically during IPv4 Dynamic Host Configuration Protocol (DHCP) parsing, allows a remote attacker on the same local network segment to cause a denial of service. By sending a specially crafted IPv4/UDP DHCP reply, the attacker can trigger an out-of-bounds read, leading to the `iscsiuio` process crashing. This issue affects systems where `iscsiuio` is actively handling IPv4 DHCP traffic.

    Published: 12 Aug 2026
    Unknown

    CVE-2026-73327

    Last Modified: 17 Aug 2026

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority as the reported behavior is intentional. The update process is designed to write files to disk and is restricted to the highest-privilege users working with cryptographically verified Joomla archives.

    Published: 12 Aug 2026
    6.5
    Medium

    CVE-2026-18727

    Last Modified: 25 Aug 2026

    A flaw was found in open-iscsi's iscsiuio component. This vulnerability involves an integer underflow and out-of-bounds read during Dynamic Host Configuration Protocol for IPv6 (DHCPv6) packet parsing. Specifically, crafted DHCPv6 Advertise traffic with a short User Datagram Protocol (UDP) length can cause the DHCPv6 payload length to underflow. An unauthenticated attacker on an adjacent network segment can exploit this by sending specially crafted IPv6 UDP traffic while the client is in an active DHCPv6 exchange, leading to a denial of service due to a process crash or service disruption.

    Published: 12 Aug 2026
    6.5
    Medium

    CVE-2026-18726

    Last Modified: 25 Aug 2026

    A flaw was found in open-iscsi. This vulnerability allows a remote attacker on the same local network segment to cause a Denial of Service (DoS) in the iscsiuio daemon. By sending a specially crafted Internet Control Message Protocol version 6 (ICMPv6) Router Advertisement with a zero-length option, the attacker can trigger an infinite loop. This leads to sustained CPU usage, rendering the daemon unresponsive and impacting system availability. A secondary risk of out-of-bounds reads exists with a short IPv6 payload, though no memory corruption or data exposure has been confirmed.

    Published: 12 Aug 2026
    5.8
    Medium

    CVE-2026-19130

    Last Modified: 26 Aug 2026

    A flaw was found in the provider-credential-controller component of multicluster-engine (MCE). An attacker with specific permissions on the hub cluster, and knowledge of a prior credential value, could exploit an authorization bypass vulnerability. By manipulating `copiedFrom` labels, the attacker could intercept newly rotated provider credentials, leading to unauthorized information disclosure. This allows access to sensitive credentials that should otherwise be protected.

    Published: 12 Aug 2026
    8.8
    High

    CVE-2026-69106

    Last Modified: 11 Sept 2026

    A low-privileged user may poison cached artifact metadata under specific conditions, potentially causing consumers to retrieve untrusted content.

    Published: 12 Aug 2026
    7.5
    High

    CVE-2026-42018

    Last Modified: 11 Sept 2026

    JFrog Artifactory could return an internal anonymous-user token to an unauthenticated caller when anonymous access is disabled, potentially exposing sensitive resources.

    Published: 12 Aug 2026
    7.6
    High

    CVE-2026-16907

    Last Modified: 17 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary code due to improper bounds checking.

    Published: 12 Aug 2026
    7.1
    High

    CVE-2026-17248

    Last Modified: 13 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to cause a denial of service due to improper neutralization of special elements in an OS command.

    Published: 12 Aug 2026
    7.5
    High

    CVE-2026-17271

    Last Modified: 13 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to improper validation of input size.

    Published: 12 Aug 2026
    9.8
    Critical

    CVE-2026-17218

    Last Modified: 13 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to execute arbitrary code due to an out-of-bounds write.

    Published: 12 Aug 2026
    8.8
    High

    CVE-2026-18669

    Last Modified: 13 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 is vulnerable to a privilege escalation as the result of a remote code execution vulnerability in the activation engine component. An authenticated attacker can execute a maliciously planted script with root authority.

    Published: 12 Aug 2026
    10
    Critical

    CVE-2026-73299

    Last Modified: 12 Aug 2026

    Prompty is a markdown file format (.prompty) for LLM prompts. Prior to 0.1.5 and 2.0.0-beta.5, the TypeScript Nunjucks renderer evaluated untrusted .prompty template bodies with unrestricted JavaScript member access. An attacker-controlled template could traverse constructor and prototype properties to execute JavaScript in the host Node.js process. This issue is fixed in versions 0.1.5 and 2.0.0-beta.5.

    Published: 12 Aug 2026
    7.7
    High

    CVE-2026-16863

    Last Modified: 13 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information due to an out-of-bounds read.

    Published: 12 Aug 2026
    9.8
    Critical

    CVE-2026-16956

    Last Modified: 13 Aug 2026

    IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.

    Published: 12 Aug 2026
    9.9
    Critical

    CVE-2026-16860

    Last Modified: 13 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary code due to an uncontrolled search path element.

    Published: 12 Aug 2026
    8.8
    High

    CVE-2026-16906

    Last Modified: 12 Aug 2026

    IBM i 7.6, and 7.5 could allow a remote authenticated attacker to execute arbitrary commands with elevated privileges due to improper neutralization of special elements used in an OS command.

    Published: 12 Aug 2026
    8.8
    High

    CVE-2026-16856

    Last Modified: 17 Aug 2026

    IBM i 7.6, and 7.5 could allow a local attacker to gain elevated privileges due to improper neutralization of special elements used in an OS command.

    Published: 12 Aug 2026
    7.5
    High

    CVE-2026-16931

    Last Modified: 13 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to improper handling of zero-length TCP options.

    Published: 12 Aug 2026
    8.8
    High

    CVE-2026-17110

    Last Modified: 17 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary commands and obtain sensitive information due to improper privilege management.

    Published: 12 Aug 2026
    4.3
    Medium

    CVE-2026-17109

    Last Modified: 13 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to add unexpected parameters to a command due to parameter injection.

    Published: 12 Aug 2026
    6.3
    Medium

    CVE-2026-17420

    Last Modified: 13 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrictions due to improper neutralization of special elements in an SQL parameter.

    Published: 12 Aug 2026
    4.3
    Medium

    CVE-2026-17222

    Last Modified: 13 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to modify data in certain SQL tables due to improper neutralization of special elements used in an SQL command.

    Published: 12 Aug 2026
    8.7
    High

    CVE-2026-73298

    Last Modified: 13 Aug 2026

    The Microsoft Container Migration Solution Accelerator is a multi-service application that provides a multi-agent, AI-driven migration solution for moving container service configurations to Azure Kubernetes Service. In version 2.1.2 and earlier, a security vulnerability was identified in the Container Migration Solution Accelerator, specifically an authenticated IDOR (Insecure Direct Object Reference) that allows users to read, write, and delete processes belonging to other authenticated users. The issue affects multiple API endpoints, where ownership checks are missing, enabling unauthorized access and modification of migration data across users within the same organization. The vulnerability is present in both process and file management APIs, and the application relies on Entra ID authentication but lacks proper authorization controls between users. Authenticated users are able to access, modify, and delete processes and files belonging to other users without proper authorization checks.

    Published: 12 Aug 2026
    6.5
    Medium

    CVE-2026-17419

    Last Modified: 17 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to modify SQL tables due to improper neutralization of special elements used in an SQL command.

    Published: 12 Aug 2026
    8.5
    High

    CVE-2026-17418

    Last Modified: 13 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local authenticated attacker to cause a denial of service due to improper neutralization of special elements used in an SQL command.

    Published: 12 Aug 2026
    6.5
    Medium

    CVE-2026-17266

    Last Modified: 17 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information due to improper limitation of a pathname to a restricted directory.

    Published: 12 Aug 2026
    8.3
    High

    CVE-2026-18235

    Last Modified: 13 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary Control Language commands due to insufficient input validation.

    Published: 12 Aug 2026
    6.8
    Medium

    CVE-2026-17268

    Last Modified: 13 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrictions due to improper validation of a session token.

    Published: 12 Aug 2026
    9.6
    Critical

    CVE-2026-17276

    Last Modified: 13 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to escalate privileges due to improper authorization in the handling of high-authority threads.

    Published: 12 Aug 2026
    6.3
    Medium

    CVE-2026-18250

    Last Modified: 13 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information and bypass security restrictions due to a race condition.

    Published: 12 Aug 2026
    8.8
    High

    CVE-2026-18713

    Last Modified: 13 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 s vulnerable to privilege escalation via Navigator for i. An authenticated user could elevate privileges to a root user to execute commands.

    Published: 12 Aug 2026
    8.1
    High

    CVE-2026-16904

    Last Modified: 13 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary commands due to improper privilege management during monitor owner reassignment.

    Published: 12 Aug 2026
    8.8
    High

    CVE-2026-44741

    Last Modified: 12 Aug 2026

    Pimcore's Admin Classic Bundle provides a Backend UI for Pimcore. Versions prior to 2.3.6 and 1.7.18 have a SQL injection vulnerability in Pimcore's translation grid date filter — the user-supplied `property` field from the filter JSON is interpolated directly into a `UNIX_TIMESTAMP(DATE(FROM_UNIXTIME(...)))` SQL expression without parameterization or allowlist validation. Versiosn 2.3.6 and 1.7.18 fix the issue.

    Published: 12 Aug 2026
    8.8
    High

    CVE-2026-49467

    Last Modified: 14 Aug 2026

    Pingvin Share X is a secure and easy self-hosted file sharing platform. A vulnerability in versions 1.5.0 through 1.18.0 allow an attacker to bypass password verification when managing Time-based One-Time Password (TOTP) settings. The root cause is a missing `await` keyword on calls to the asynchronous `verifyPassword` method in `authTotp.service.ts` and the `authenticateUser` method in `auth.service.ts`. In JavaScript, an unawaited `Promise` is always truthy. So the logic intended to throw a `ForbiddenException` when a password is incorrect. It never executes because the expression evaluates the existence of the `Promise` object rather than its resolved boolean result. The vulnerability is fixed in version 1.18.1 by ensuring all asynchronous authentication calls are properly awaited. There are no official workarounds. If a user is locked out, an administrator must manually reset the user's TOTP status in the database.

    Published: 12 Aug 2026
    8.8
    High

    CVE-2026-18847

    Last Modified: 17 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote unauthenticated attacker to harvest credentials due to spoofing of Navigator for i.

    Published: 12 Aug 2026
    6.4
    Medium

    CVE-2026-16694

    Last Modified: 17 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 is vulnerable to stored cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

    Published: 12 Aug 2026
    4.3
    Medium

    CVE-2026-17094

    Last Modified: 17 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information and manipulate files due to a path traversal vulnerability.

    Published: 12 Aug 2026
    8.3
    High

    CVE-2026-17095

    Last Modified: 17 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrictions due to unsafe reflection.

    Published: 12 Aug 2026
    3
    Low

    CVE-2026-18246

    Last Modified: 17 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrictions due to an interpretation conflict in the multipart parser.

    Published: 12 Aug 2026
    4.3
    Medium

    CVE-2026-18106

    Last Modified: 17 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information due to improper validation of user-supplied path input.

    Published: 12 Aug 2026
    4.3
    Medium

    CVE-2026-18144

    Last Modified: 17 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrictions due to improper authorization.

    Published: 12 Aug 2026
    8.1
    High

    CVE-2026-18098

    Last Modified: 17 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information and compromise system integrity due to an XML injection flaw.

    Published: 12 Aug 2026
    8.8
    High

    CVE-2026-18683

    Last Modified: 17 Aug 2026

    IBM i 7.6, 7.5, 7.4, and 7.3 is vulnerable to privilege escalation via Navigator for i. An authenticated user could elevate privileges to a root user to execute commands.

    Published: 12 Aug 2026
    7.7
    High

    CVE-2026-48554

    Last Modified: 14 Aug 2026

    Nagios Core before 4.5.14 and Nagios XI before 2026R1.7 are vulnerable to authenticated remote code execution via unfiltered NOTIFICATION-family macro substitution through the com_data parameter. When a notification command references $NOTIFICATIONCOMMENT$ or $NOTIFICATIONAUTHOR$ in a shell-reachable position, authenticated UI users can run arbitrary commands as the nagios user. Exploitation requires a non-default configuration in which a notification command references these macros in a shell-executed command line.

    Published: 12 Aug 2026