CVE-2026-75156
— Apache Airflow FAB provider: FAB Azure AD OAuth: id_token issuer/audience not validated —…
Apache Airflow FAB provider versions 3.7.3 through 3.8.0 do not validate the issuer or audience of Azure AD `id_token`s during OAuth login. Deployments are affected only when the FAB auth manager is …
|
Authentication
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
CVE-2026-69562
— Microsoft SQL Server Information Disclosure Vulnerability
None
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
CVE-2026-52307
— ClassCMS Column Management Stored Cross-Site Scripting
An authenticated stored cross-site scripting (XSS) vulnerability in the Column Management component of ClassCMS 1CMS v5.6 allows attackers to execute arbitrary web scripts or HTML via injecting a cra…
|
Cross-Site Scripting
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
None
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
CVE-2026-69465
— Microsoft Office SharePoint Remote Code Execution Vulnerability
None
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
CVE-2026-65812
— Microsoft Teams for Android Information Disclosure Vulnerability
None
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
CVE-2026-65772
— Microsoft Dynamics 365 On-Premises Remote Code Execution Vulnerability
None
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
CVE-2026-47625
— NVIDIA Triton Inference Server Missing Authorization Vulnerability
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could abuse missing authorization. A successful exploit of this vulnerability might lead to information disclosure,…
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
CVE-2026-69441
— Windows Installer Elevation of Privilege Vulnerability
None
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
None
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
CVE-2026-69439
— .NET and Visual Studio Elevation of Privilege Vulnerability
None
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
CVE-2026-26084
— Fortinet FortiSandbox Improper Access Control Vulnerability
A improper access control vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.4.8, FortiSandbox Cloud 5.0.4 through 5.0.5, FortiSandbox PaaS 5.0.4 through 5.0.5 m…
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
CVE-2026-22575
— Fortinet FortiManager Improper Access Control Vulnerability
An improper access control vulnerability in Fortinet FortiManager 7.6.0 through 7.6.4, FortiManager 7.4.0 through 7.4.10, FortiManager 7.2 all versions, FortiManager Cloud 7.6.2 through 7.6.4, FortiM…
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
CVE-2026-20293
— Cisco UCS and UCS-Based Appliances UEFI Shell Secure Boot Bypass Vulnerability
A vulnerability in the Unified Extensible Firmware Interface (UEFI) Shell implementation of Cisco UCS Servers and UCS-based appliances could allow an authenticated attacker with valid credentials for…
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
CVE-2026-69477
— Microsoft Office Access Remote Code Execution Vulnerability
None
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
CVE-2026-16497
— NVIDIA Triton Inference Server Denial of Service Vulnerability
NVIDIA Triton Inference Server for Linux contains a vulnerability where an attacker could cause excessive iteration. A successful exploit of this vulnerability might lead to denial of service.
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
CVE-2026-69464
— Microsoft Office SharePoint Elevation of Privilege Vulnerability
None
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
None
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
CVE-2026-69564
— Windows Online Certificate Status Protocol (OCSP) Elevation of Privilege Vulnerability
None
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
CVE-2026-69560
— Windows Work Folder Service Elevation of Privilege Vulnerability
None
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026
Sep 08, 2026