Posts of last 24 hours
A vulnerability labeled as problematic has been found in n8n-io n8n up to 2.33.3/2.34.0. Affected by this vulnerability is an unknown functionality of the component GraphQL Node. The manipulation results in information disclosure.
This vulnerability is known as CVE-2026-77076. It is possible to launch the attack remotely. No exploit is available.
The affected component should be upgraded.
https://vuldb.com/vuln/393691
A vulnerability labeled as problematic has been found in Brushfire Online Experience. This affects an unknown function. Executing a manipulation can lead to information disclosure.
This vulnerability appears as CVE-2026-75928. The attack may be performed from remote. There is no available exploit.
This product is available as a managed service. Users are not able to maintain vulnerability countermeasures themselves.
https://vuldb.com/vuln/394139
https://www.malware-traffic-analysis.net/2026/08/21/index.html
A forum user posting as misere is selling what they describe as the database of beautysuccess.fr, a French beauty and cosmetics retailer, listing 10,279,819 total records reducing to 5,169,727 unique.
https://darkwebinformer.com/french-beauty-retailer-data-allegedly-up-for-sale-with-the-seller-crediting-a-third-party-source/
The Open Worldwide Application Security Project has a brand-new top 10 security list tailored for the modern era, and it debuts a Universal Skill Format to add consistency and security to the AI add-ons.
https://www.darkreading.com/application-security/owasp-flags-top-ai-skill-risks-security-blueprint
Вы думаете, вырастить нервные клетки — дело недель? Им, как и вам, нужны годы, чтобы повзрослеть.
https://www.securitylab.ru/news/576317.php
A forum user posting as Knox is selling what they describe as voter registration data from Iraq's Independent High Electoral Commission, claiming records on 31 million Iraqis including 28 million phone numbers, with the intrusion dated to August 2026.
https://darkwebinformer.com/iraqi-electoral-commission-data-allegedly-offered-for-sale-covering-31-million-citizens/
A vulnerability was found in Microsoft .NET Framework up to 4.8.1. It has been declared as problematic. The affected element is an unknown function. Executing a manipulation can lead to denial of service.
This vulnerability is handled as CVE-2023-21722. The attack can be executed remotely. There is not any exploit available.
It is advisable to implement a patch to correct this issue.
https://vuldb.com/vuln/220997
A vulnerability was found in Microsoft Azure App Service on Azure Stack Hub. It has been rated as critical. The impacted element is an unknown function. The manipulation leads to improper privilege management.
This vulnerability is uniquely identified as CVE-2023-21777. The attack is possible to be carried out remotely. No exploit exists.
Applying a patch is the recommended action to fix this issue.
https://vuldb.com/vuln/220998
A vulnerability identified as critical has been detected in Microsoft Windows. This impacts an unknown function of the component ODBC Driver. This manipulation causes integer overflow.
The identification of this vulnerability is CVE-2023-21797. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
https://vuldb.com/vuln/221000