Aggregator
Please support the site operations by clicking ads.
[Virtual Event] Building a Secure AI Strategy for the Enterprise
4 weeks hence
【vivo 助力】扬帆安全沙龙·2026·上海站:聚焦海外AI标识监管,共筑可信AI出海新未来
1 hour 56 minutes ago
vivo数据保护合规工程师陈晓芳发表了题为《重塑生成式AI的信任链:海外AI标识监管与出海实战》的主题演讲。
【报名倒计时】第四届全国大学生开源情报数据采集与分析挑战赛
2 hours 26 minutes ago
为在情报学领域深入落实国家人才培养战略,激发大学生对开源情报分析的热情,提升学生在数据采集、深度分析及情报应用
情报搜集的历史脉络:从传统人力情报到现代开源情报
2 hours 26 minutes ago
情报史的本质是一部信息获取方式的演进史。在人类文明的历史长河中,决策者对未知环境的认知需求始终驱动着情报活动的形态变迁。
26秒攻陷11家机构:一场由数百个AI智能体编排的PaperCut全球攻击行动
3 hours 56 minutes ago
GreyNoise观测到一名疑似俄语背景的攻击者利用IP地址45.142.193.132,借助人工智能开发、测试并投放了针对打印管理软件PaperCut NG/MF两个在野漏洞(CVE-2026-81578、CVE-2026-82078)的利用代码,发动了一场全球性的大规模攻击行动。
CVE-2026-82066 | MongoDB up to 7.0.40/8.0.29/8.3.8 Query Planning out-of-bounds (Nessus ID 344375)
4 hours 22 minutes ago
A vulnerability was found in MongoDB up to 7.0.40/8.0.29/8.3.8. It has been classified as problematic. Affected is an unknown function of the component Query Planning. Performing a manipulation results in out-of-bounds read.
This vulnerability is known as CVE-2026-82066. Remote exploitation of the attack is possible. No exploit is available.
Upgrading the affected component is recommended.
vuldb.com
CVE-2026-80922 | Linux Kernel up to 6.12.107/6.18.48/7.1.12/7.2.2 qcom-rng random values (Nessus ID 344376)
4 hours 22 minutes ago
A vulnerability identified as problematic has been detected in Linux Kernel up to 6.12.107/6.18.48/7.1.12/7.2.2. This issue affects some unknown processing of the component qcom-rng. Performing a manipulation results in insufficiently random values.
This vulnerability was named CVE-2026-80922. The attack may be initiated remotely. There is no available exploit.
You should upgrade the affected component.
vuldb.com
CVE-2026-80925 | Linux Kernel up to 7.2.2 VLAN af_packet.c vlan_transfer_features hard_header_len race condition (Nessus ID 344379)
4 hours 22 minutes ago
A vulnerability classified as problematic has been found in Linux Kernel up to 7.2.2. This affects the function vlan_transfer_features of the file af_packet.c of the component VLAN. This manipulation of the argument hard_header_len causes race condition.
This vulnerability is tracked as CVE-2026-80925. The attack is restricted to local execution. No exploit exists.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2026-82074 | MongoDB up to 7.0.40/8.0.29 Aggregation Framework privileges management (Nessus ID 344380)
4 hours 22 minutes ago
A vulnerability was found in MongoDB up to 7.0.40/8.0.29. It has been rated as problematic. The impacted element is an unknown function of the component Aggregation Framework. Performing a manipulation results in improper privilege management.
This vulnerability is known as CVE-2026-82074. Remote exploitation of the attack is possible. No exploit is available.
Upgrading the affected component is advised.
vuldb.com
CVE-2026-8794 | PaperCut NG/MF up to 26.0.2 Authentication response discrepancy
4 hours 46 minutes ago
A vulnerability was found in PaperCut NG and MF up to 26.0.2 and classified as problematic. This affects an unknown function of the component Authentication Component. The manipulation results in observable response discrepancy.
This vulnerability is identified as CVE-2026-8794. The attack can be executed remotely. There is not any exploit available.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2026-69095 | OpenWrt LuCI bmx7-info bmx7-info.cgi path traversal (EUVD-2026-52288)
4 hours 46 minutes ago
A vulnerability was found in OpenWrt LuCI. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file bmx7-info.cgi of the component bmx7-info. Executing a manipulation can lead to path traversal.
The identification of this vulnerability is CVE-2026-69095. The attack may be launched remotely. There is no exploit available.
A patch should be applied to remediate this issue.
vuldb.com
CVE-2026-69097 | gitpython-developers GitPython up to 3.1.52 Submodule Operations create_submodule/clone_from submodule names code injection (EUVD-2026-52290)
4 hours 46 minutes ago
A vulnerability, which was classified as problematic, has been found in gitpython-developers GitPython up to 3.1.52. The affected element is the function create_submodule/clone_from of the component Submodule Operations. The manipulation of the argument submodule names leads to code injection.
This vulnerability is traded as CVE-2026-69097. It is possible to initiate the attack remotely. There is no exploit available.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2026-69094 | admidio up to 5.0.10 mylist_function.php list_uuid authorization (EUVD-2026-52287)
4 hours 46 minutes ago
A vulnerability has been found in admidio up to 5.0.10 and classified as critical. This affects an unknown function of the file mylist_function.php. This manipulation of the argument list_uuid causes authorization bypass.
This vulnerability is handled as CVE-2026-69094. The attack can be initiated remotely. There is not any exploit available.
The affected component should be upgraded.
vuldb.com
CVE-2026-69093 | Admidio up to 5.0.10 Category Report preferences.php delete/copy cross-site request forgery (EUVD-2026-52286)
4 hours 46 minutes ago
A vulnerability was found in Admidio up to 5.0.10 and classified as problematic. This impacts an unknown function of the file modules/category-report/preferences.php of the component Category Report. Such manipulation of the argument delete/copy leads to cross-site request forgery.
This vulnerability is uniquely identified as CVE-2026-69093. The attack can be launched remotely. No exploit exists.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2026-67609 | Telenia TVox up to 24.9.21/26.5.3 Sudoers Configuration /etc/sudoers.d/telenia privileges management (EUVD-2026-52324)
4 hours 46 minutes ago
A vulnerability classified as critical was found in Telenia TVox up to 24.9.21/26.5.3. This affects an unknown function of the file /etc/sudoers.d/telenia of the component Sudoers Configuration. The manipulation results in improper privilege management.
This vulnerability is reported as CVE-2026-67609. The attack can be launched remotely. No exploit exists.
vuldb.com
CVE-2026-69096 | OpenWrt luci-app-dockerman RPC Backend docker_rpc.uc docker.container.ttyd_start ID os command injection (EUVD-2026-52289)
4 hours 46 minutes ago
A vulnerability was found in OpenWrt luci-app-dockerman. It has been classified as very critical. Affected is the function docker.container.ttyd_start of the file docker_rpc.uc of the component RPC Backend. Performing a manipulation of the argument ID results in os command injection.
This vulnerability was named CVE-2026-69096. The attack may be initiated remotely. There is no available exploit.
vuldb.com
CVE-2026-69092 | Admidio up to 5.0.10 SSO/SAML Endpoint SAML Issuer cross site scripting (EUVD-2026-52285)
4 hours 46 minutes ago
A vulnerability identified as problematic has been detected in Admidio up to 5.0.10. This vulnerability affects unknown code of the component SSO/SAML Endpoint. This manipulation of the argument SAML Issuer causes cross site scripting.
This vulnerability is tracked as CVE-2026-69092. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.
vuldb.com
CVE-2026-69090 | Admidio up to 5.0.10 Role groups_roles.php role UUID improper authorization (EUVD-2026-52283)
4 hours 46 minutes ago
A vulnerability classified as problematic was found in Admidio up to 5.0.10. This affects an unknown part of the file groups_roles.php of the component Role Handler. Such manipulation of the argument role UUID leads to improper authorization.
This vulnerability is traded as CVE-2026-69090. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is advised.
vuldb.com
CVE-2026-69091 | admidio up to 5.0.10 Forum modules/forum.php access control (EUVD-2026-52284)
4 hours 46 minutes ago
A vulnerability, which was classified as problematic, was found in admidio up to 5.0.10. The impacted element is an unknown function of the file modules/forum.php of the component Forum Module. The manipulation results in improper access controls.
This vulnerability is known as CVE-2026-69091. It is possible to launch the attack remotely. No exploit is available.
You should upgrade the affected component.
vuldb.com