Overview of incoming advisories.
1553 results found
A type confusion vulnerability exists in Google Chromium's V8 JavaScript engine, tracked as CVE-2026-85046. The flaw allows a remote attacker to execute arbitrary code within the sandbox by luring a victim to a crafted HTML page. The vulnerability is particularly concerning as it impacts multiple Chromium-based browsers including Google Chrome, Microsoft Edge, and Opera. CISA has flagged this vulnerability under BOD 26-04, which prioritizes security updates based on risk. Forensic triage requirements have also been outlined in CISA's BOD 26-04 implementation guidance. The vulnerability is listed in the NVD and has been addressed in a Chrome stable channel update released in September 2026. Given its remote exploitability and broad browser impact, it is rated as high severity.
View original advisory →CVE-2026-82712 affects Tycon Systems TPDIN-Monitor-WEB3 versions 2.2.9 and prior with a cross-site request forgery (CSRF) vulnerability. The flaw could allow an attacker to perform unauthorized state-changing operations on the affected device. This is an OT/ICS-related vulnerability affecting industrial monitoring hardware. CISA has issued an ICS advisory (ICSA-26-246-08) regarding this issue. Firmware updates have been released (v2.4.2) to remediate the vulnerability. Users are advised to upgrade to the patched firmware version to mitigate risk. The vulnerability poses a risk to operational technology environments where the device is deployed.
View original advisory →QAnything 2.0.0 contains a critical authentication bypass vulnerability affecting two API endpoints: /api/local_doc_qa/get_file_base64 and /api/local_doc_qa/get_doc. These endpoints fail to enforce authentication, allowing unauthenticated attackers to access any uploaded file or document within the system. Attackers can enumerate file identifiers through unauthenticated endpoints and retrieve base64-encoded files or parsed document chunks. The vulnerability lacks ownership verification, enabling cross-tenant knowledge base content disclosure. This means an attacker can access documents belonging to other users or organizations hosted on the same instance. The issue is tracked as CVE-2026-85671 and affects specifically version 2.0.0 of QAnything by Netease Youdao. The vulnerability poses a significant risk to confidentiality in multi-tenant deployments of the QAnything knowledge base platform.
View original advisory →AgentScope versions through 2.0.7.post1 contain a path traversal vulnerability in the LocalWorkspace.add_skill function. The vulnerability arises from an unconfined source path parameter (skill_path) that allows attackers to copy arbitrary server directories into the agent workspace. By supplying a malicious directory path in the skill_path request parameter, an attacker can copy sensitive files into the skills directory. These copied files then become accessible through the workspace skill listing interface. This could lead to unauthorized disclosure of sensitive server files and data. The vulnerability is tracked as CVE-2026-85685 and affects the _local_workspace.py module. No patch version beyond 2.0.7.post1 has been referenced in the advisory.
View original advisory →A security vulnerability exists in @fastify/middie versions >= 9.1.0 and before 9.3.4 that allows unauthenticated attackers to bypass path-based access controls. The flaw arises because the middleware matches against raw request targets while the Fastify router resolves absolute-form request targets to their paths before dispatching. This mismatch means requests using absolute-form targets reach route handlers while skipping path-scoped middleware such as authentication and authorization checks. An unauthenticated network attacker can exploit this to circumvent access controls in Fastify applications relying on middie for security enforcement. The vulnerability poses a significant risk to applications using affected versions for access control. The fix is available in @fastify/middie version 9.3.4 or later, and users are strongly advised to upgrade immediately.
View original advisory →A SQL injection vulnerability has been identified in code-projects Hospital Information System version 1.0. The vulnerability exists in the viewReq function within the viewReq.php file, where manipulation of the 'ID' argument allows for SQL injection attacks. The attack can be executed remotely without requiring physical access to the target system. A public exploit is already available, increasing the risk of exploitation in the wild. The vulnerability affects the data integrity and confidentiality of the hospital information system's database. Given the sensitive nature of healthcare data and the public availability of the exploit, this represents a significant risk. The issue has been documented across multiple security databases including NVD, VulDB, and GitHub.
View original advisory →OWL's DocumentProcessingToolkit contains a server-side request forgery (SSRF) vulnerability in the extract_document_content tool. The tool fetches caller-supplied URLs without any scheme, host, or IP filtering, making it exploitable by attackers. Threat actors can inject malicious URLs through prompt injection techniques to cause the server to fetch internal resources. The responses from these internal requests are returned to the agent context, potentially exposing sensitive internal network data. This vulnerability is tracked as CVE-2026-85675 and affects the camel-ai/owl project. The vulnerable code is located in owl/utils/document_toolkit.py. The lack of input validation makes this a significant security risk for deployments using this toolkit. Exploitation could lead to unauthorized access to internal services, metadata endpoints, and other restricted resources.
View original advisory →Grav Shortcode Core versions before 6.2.5 are affected by stored cross-site scripting (XSS) vulnerabilities. The vulnerability exists in the [lorem] tag parameter and [details] summary parameter, which are written to rendered pages without proper HTML escaping. Any attacker with page-edit access can inject arbitrary HTML and JavaScript into page content. The injected scripts execute in the browsers of all visitors who view the affected pages, including administrators. This makes it possible to steal session tokens, perform actions on behalf of admins, or further compromise the site. The issue has been addressed in version 6.2.5 of the Grav Shortcode Core plugin. Users are strongly advised to update immediately. References and advisories are available via GitHub Security Advisories and VulnCheck.
View original advisory →xiaobei versions through 5.5.2 contain a critical vulnerability in the /webhook_worktool handler that lacks any authentication or signature validation. This allows unauthenticated attackers to inject arbitrary messages directly into the agent pipeline. The vulnerability is exploitable remotely without credentials, enabling malicious message publication through the webhook endpoint. Additionally, unvalidated media URL fetching in the same handler enables server-side request forgery (SSRF), allowing attackers to pivot and reach internal services. The flaw is located in the awada-server routing code for webhook handling. No patch appears to be available beyond version 5.5.2 at time of disclosure. The issue has been reported via GitHub issues and covered by VulnCheck advisories.
View original advisory →AppFlowy-Cloud version 0.9.64 contains a critical authorization vulnerability where the application fails to verify that requested collaboration objects belong to the requesting user's workspace. This flaw allows authenticated attackers to supply a victim's object ID paired with their own workspace ID to bypass access controls entirely. As a result, attackers can read, modify, or delete documents and database rows belonging to other workspaces without proper authorization. The vulnerability exists in the Casbin-based access control logic within the collab authorization module. Exploitation does not require elevated privileges beyond having a valid account, making it accessible to any registered user. The issue was tracked and reported via GitHub issues and further documented by VulnCheck. Affected organizations running self-hosted AppFlowy-Cloud instances should upgrade immediately to a patched version.
View original advisory →Snipe-IT versions prior to 8.6.2 contain an authorization bypass vulnerability affecting the checkout-acceptance report actions when Full Multiple Company Support is enabled. Authenticated users holding only the reports.view permission can exploit sequential acceptance ID enumeration to access records belonging to other companies. The flaw stems from a null check on the legacy users.company_id column, which fails to enforce proper company-level isolation. Exploitation allows unauthorized users to soft-delete acceptances or trigger reminder emails for acceptances outside their own company scope. The vulnerability requires authentication but no elevated privileges beyond reports.view. It is an insecure direct object reference (IDOR) style flaw compounded by missing authorization checks. A fix has been released in Snipe-IT version 8.6.2. Organizations using multi-company configurations are particularly at risk and should upgrade immediately.
View original advisory →A security vulnerability was identified in the Canva Android App prior to version 2.376.0. The flaw allowed external origins to be loaded within a privileged WebView component, bypassing intended security boundaries. An attacker who controls the content loaded by the user could communicate with Canva's backend using the victim's authenticated session. This effectively enables session hijacking or unauthorized actions performed on behalf of the user. The vulnerability poses significant risk to users who may be tricked into loading malicious content. It has been assigned CVE-2026-85085 and is documented in the NVD. The issue has been addressed in Canva Android App version 2.376.0 and later.
View original advisory →LLaMA-Factory, an open-source LLM fine-tuning framework, contains a server-side request forgery (SSRF) vulnerability in its OpenAI-compatible API multimodal media URL handler. The vulnerability stems from a flawed SSRF mitigation: the check_ssrf_url guard validates URLs only once, but the subsequent requests.get call follows HTTP redirects and re-resolves DNS without re-validation. This allows unauthenticated attackers to exploit HTTP redirects or DNS rebinding techniques to bypass the SSRF protection. Successful exploitation enables attackers to reach internal network addresses and cloud metadata endpoints such as AWS IMDSv1. The vulnerability affects LLaMA-Factory version 0.9.5 and is tracked as CVE-2026-85673. The flaw is particularly dangerous in cloud-hosted deployments where metadata services expose sensitive credentials and configuration data.
View original advisory →CVE-2026-75925 describes a critical CRLF injection vulnerability in IXON VPN Client versions prior to 1.4.7. The flaw allows an attacker to inject arbitrary configuration directives into a file consumed by a privileged subprocess, enabling command execution as root or SYSTEM. The local configuration service accepts changes without any authentication or origin verification, making exploitation straightforward. Injected configurations persist across reboots and VPN restarts, providing long-term persistence with no visible behavioral change to the user. The vulnerability is classified under CWE as improper neutralization of CRLF sequences. CISA has issued an ICS advisory (ICSA-26-246-02) regarding this vulnerability. IXON has also published their own security advisory. Users are urged to upgrade to version 1.4.7 or later to remediate the issue.
View original advisory →CVE-2026-85509 describes a stack-based buffer overflow vulnerability in FreeIPMI versions prior to 1.6.19. The flaw exists in the _read_fru_data function within libfreeipmi/fru/ipmi-fru.c. The vulnerability is triggered when a Baseboard Management Controller (BMC) returns more bytes than were originally requested during FRU data reads. This type of stack overflow can potentially allow attackers to execute arbitrary code or crash the affected system. The issue has been patched in FreeIPMI version 1.6.19. Users are advised to upgrade to the fixed version immediately. The vulnerability was disclosed via the oss-security mailing list. FreeIPMI is a GNU project providing IPMI management utilities widely used in server infrastructure environments.
View original advisory →A SQL injection vulnerability has been discovered in code-projects Doctor Appointment System version 1.0. The flaw exists in the /contactus.php file, where manipulation of the 'firstname' argument allows for SQL injection attacks. The vulnerability can be exploited remotely without requiring local access. A public exploit has already been published and is available for use, increasing the risk of active exploitation. The affected product is a PHP-based web application used for managing doctor appointments. The issue was assigned CVE-2026-85403 and is tracked in the NVD and VulDB databases.
View original advisory →CVE-2026-85649 affects (Holloway) Chew, Kean Ho's Actualizer v1.2.0 and earlier, specifically in the Shell/debian-minbase-install.sh installer script. The vulnerability is a fail-open password validation flaw where the installer calls mkpasswd to generate yescrypt password hashes for root and Alpha user accounts but fails to check the command's return value. If mkpasswd fails due to an incompatible implementation or lack of yescrypt support, the resulting password hash variable may be empty. The build process continues regardless, potentially producing system images with empty password fields for privileged accounts. This could allow passwordless authentication for root and Alpha users depending on system authentication configuration. The vulnerability is patched in version v1.2.1, with a fix committed to the project repository. References include a Zenodo publication, the vulnerable source code line, a patch commit, and the fixed release.
View original advisory →OpenPanel versions before 2.3.0 contain an unauthenticated Server-Side Request Forgery (SSRF) vulnerability in the GET /tools/site-checker endpoint. The endpoint accepts a fully client-controlled URL parameter without any private IP filtering or DNS-rebinding protection. Attackers can exploit this to make the OpenPanel server issue arbitrary HTTP requests to internal services, localhost, and cloud metadata endpoints (e.g., AWS/GCP/Azure IMDS). The vulnerability exposes internal HTTP response titles, headers, status codes, and SSL certificate information. No authentication is required to trigger the vulnerability, significantly lowering the barrier for exploitation. The issue has been addressed in OpenPanel version 2.3.0. A GitHub Security Advisory (GHSA-gqcr-xgfj-pq29) and a VulnCheck advisory have been published alongside the NVD entry.
View original advisory →A critical SQL Injection vulnerability (CVE-2026-57777) has been identified in Automattic's WooCommerce plugin, classified as Blind SQL Injection. The vulnerability stems from improper neutralization of special elements used in SQL commands. All versions of WooCommerce prior to 11.0 are affected. The issue has been patched in version 11.0, with a corresponding pull request available on GitHub. The vulnerability was also documented by Patchstack, referencing it in context of WooCommerce plugin version 10.9.4. Blind SQL Injection can allow attackers to extract sensitive database information without direct error feedback, posing significant risk to WordPress-based e-commerce sites. Site administrators are strongly advised to update to WooCommerce 11.0 or later immediately to mitigate the risk.
View original advisory →A privilege escalation vulnerability exists in DirectIo64.sys, a kernel driver used by PassMark PerformanceTest (before 11.1 build 1012), BurnInTest (before 11.1 build 1000), and OSForensics (before 11.1 build 1016). The vulnerability arises from missing allowlist or port validation on exposed IOCTLs, allowing local users to issue arbitrary IN and OUT instructions to any x86 I/O port. Attackers can exploit this by obtaining a device handle and writing to sensitive hardware ports including PS/2 controller, CPU reset, CMOS configuration, and interrupt controller ports. This enables immediate system resets or other hardware-level manipulations from a standard user account. The flaw represents a significant local privilege escalation risk on Windows systems where any of the affected PassMark products are installed. Patches have been released in the respective updated build versions of each affected product.
View original advisory →