Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
7.1 HIGH
CVE-2026-72694 — Mrtg: mrtg daemon symlink-following chown allows local privilege escalation via pid file …

A flaw was found in MRTG. When the MRTG daemon is started as a root user and subsequently drops privileges, a local, low-privileged attacker can exploit a symbolic link (symlink) following vulnerabil…

Aug 11, 2026 Aug 20, 2026
Aug 11, 2026
Aug 20, 2026
7.8 HIGH
CVE-2026-72693 — Kbd: local privilege escalation in openvt via incorrect process owner verification allowi…

`openvt -u` is intended to identify the owner of the current VT and then execute `login` as that user from a privileged context. In the documented `kbrequest`/init usage, the ownership test in `authe…

Aug 11, 2026 Sep 02, 2026
Aug 11, 2026
Sep 02, 2026
5.3 MEDIUM
CVE-2026-71218 — Iperf3: unbounded peer-controlled allocation in iperf3 json_read() allows unauthenticated…

A flaw was found in iperf3. A remote unauthenticated attacker can exploit a vulnerability in the `JSON_read()` function, which accepts a peer-controlled message length and allocates memory without an…

enterprise_linux enterprise_linux | Remote | Denial of Service
Aug 11, 2026 Aug 14, 2026
Aug 11, 2026
Aug 14, 2026
7.5 HIGH
CVE-2026-71217 — Iperf3: iperf3 server accepts unbounded peer-controlled json parameters enabling remote d…

A flaw was found in iperf3. A remote attacker can exploit this vulnerability by sending crafted control-channel JSON with oversized numeric parameters, such as `parallel` and `len`, which are not pro…

enterprise_linux enterprise_linux libefiboot | Remote | Denial of Service
Aug 11, 2026 Aug 31, 2026
Aug 11, 2026
Aug 31, 2026
7.5 HIGH
CVE-2026-15567 — Wildfly: wildfly-iiop: wildfly-jacorb: wildfly: pre-auth denial of service on the iiop li…

A flaw was found in Wildfly. A remote unauthenticated attacker can trigger OutOfMemoryError as CSIv2Util's GSS token decoder reads an attacker-controlled length field without bounds checking and atte…

Aug 11, 2026 Aug 24, 2026
Aug 11, 2026
Aug 24, 2026
7.5 HIGH
CVE-2026-15565 — Undertow: undertow-websockets: undertow: pre-auth dos on websocket endpoint with @servere…

A flaw was found in Undertow. A remote attacker can cause Out of Memory on websockets endpoint without authentication on any @ServerEndpoint class that has any @OnMessage method. This allows an attac…

Aug 11, 2026 Aug 24, 2026
Aug 11, 2026
Aug 24, 2026
7.4 HIGH
CVE-2026-15563 — Wildfly-iiop-openjdk: missing authentication on eap's iiop nameservice leads to mitm or d…

A flaw was found in EAP's IIOP. The listener's NameService would accept bind operations without authentication, allowing an attacker to hijack JNDI lookups and binding them to a malicious ORB, achiev…

Aug 11, 2026 Sep 04, 2026
Aug 11, 2026
Sep 04, 2026
7.5 HIGH
CVE-2026-15562 — Jboss-remoting: jboss-remoting: integer overflow in messagereader leads to pre-authentica…

A flaw was found in EAP's jboss-remoting. A remote unauthenticated attacker who can reach :8080 (or :9990, or :4447) and complete an Upgrade: jboss-remoting handshake can cause OOM errors that degrad…

jboss_enterprise_application_platform | Remote | Denial of Service
Aug 11, 2026 Aug 24, 2026
Aug 11, 2026
Aug 24, 2026
7.5 HIGH
CVE-2026-15561 — Undertow-core: oom via missing limits in chunked trailer in eap's undertow

A flaw was found in EAP's undertow http/1.1 chunked-transfer decoder. missing limits on size and count would allow an attacker to use an unauthenticated connection to drive the JVM to an OutOfMemory …

jboss_enterprise_application_platform | Remote | Denial of Service
Aug 11, 2026 Aug 24, 2026
Aug 11, 2026
Aug 24, 2026
8.1 HIGH
CVE-2026-15560 — Openjdk-orb: unauthed class loading via iiop in eap

when EAP runs with -secmgr, the openjdk-orb's JDKBridge honours attacker-supplied CDR codebase URLs during object unmarshalling on :3528, allowing an unauthenticated attacker to load and instantiate …

jboss_enterprise_application_platform | Remote | Information Disclosure
Aug 11, 2026 Sep 01, 2026
Aug 11, 2026
Sep 01, 2026
8.1 HIGH
CVE-2026-15556 — Picketlink-federation: picketlink saml 2.0 auth bypass via missing assertions

A flaw was found in Picketlink's SP signature validation; a SAML response containing zero assertion elements matching the signature check can allow an attacker to forge a SAML response and auth as an…

jboss_enterprise_application_platform | Remote | Authentication
Aug 11, 2026 Aug 24, 2026
Aug 11, 2026
Aug 24, 2026
8.8 HIGH
CVE-2026-15555 — Jboss-marshalling-river: wildfly-clustering-infinispan-marshalling: jboss deserialization…

A flaw was found in JBoss marshalling. The Infinispan session replication path deserializes replicated session data via the JBoss Marshalling River unmarshaller with no class filtering — enabling RCE…

Aug 11, 2026 Aug 24, 2026
Aug 11, 2026
Aug 24, 2026
7.4 HIGH
CVE-2026-15554 — Undertow-core: undertow: authentication bypass via ajp ssl_cert/is_ssl forgery

the Undertow AJP listener honours forged ssl_cert and is_ssl AJP attributes without requiring any shared-secret authentication. This enables an unauthenticated attacker with direct TCP access to port…

jboss_enterprise_application_platform | Remote | Authentication
Aug 11, 2026 Aug 24, 2026
Aug 11, 2026
Aug 24, 2026
9.8 CRITICAL
CVE-2026-10579 — Picketlink-federation: auth bypass in picketlink saml unsolicited-response

A flaw was found in Picketlink Federation SAML; the unsolcited response handler would accept forged assertions with no verification or validation, permitting an unauthed attacker to authenticate as a…

jboss_enterprise_application_platform | Remote | Authentication
Aug 11, 2026 Sep 01, 2026
Aug 11, 2026
Sep 01, 2026
5.3 MEDIUM
CVE-2026-73156 — cti-transmute Sunburst and Treemap Tooltips Allow Cross-Site Scripting via Crafted Conver…

Affected versions of cti-transmute fail to HTML-escape attacker-controlled values used in ECharts Sunburst and Treemap tooltip formatters. Slice names may originate directly from STIX or MISP data, i…

Remote | Cross-Site Scripting
Aug 11, 2026 Aug 26, 2026
Aug 11, 2026
Aug 26, 2026
5.3 MEDIUM
CVE-2026-73155 — cti-transmute Missing Authorization Allows Reactions to Private Comments

Affected versions of cti-transmute allow authenticated users to add or remove emoji reactions on comments without first checking whether those users are authorized to view the target comment. The v…

Remote | Authorization
Aug 11, 2026 Aug 26, 2026
Aug 11, 2026
Aug 26, 2026
5.3 MEDIUM
CVE-2026-73140 — cti-transmute Evaluation Report Exports Expose Private Comments and Author Information

Affected versions of cti-transmute fail to apply comment-level access-control rules when generating evaluation report exports. Although normal comment retrieval filters comments according to conversi…

Remote | Authorization
Aug 11, 2026 Aug 26, 2026
Aug 11, 2026
Aug 26, 2026
4.3 MEDIUM
CVE-2026-19519 — Claircore: claircore: denial of service via unchecked type assertion in rpm header parser

A flaw was found in claircore's RPM package scanner. Crafted RPM header data in a container layer can cause an unchecked type assertion to panic the scanner. The panic is not recovered, causing the C…

quay advanced_cluster_security | Remote | Denial of Service
Aug 11, 2026 Aug 14, 2026
Aug 11, 2026
Aug 14, 2026
7.3 HIGH
CVE-2026-19418 — TYPO3 CMS - Broken Access Control in Backend and Install Tool

The referrer enforcement introduced with TYPO3-CORE-SA-2020-006 (CVE-2020-11069) became ineffective in TYPO3 v13.0, where TYPO3 CMS started serving the backend and Install Tool applications from the …

typo3 | Remote | Cross-Site Scripting
Aug 11, 2026 Aug 26, 2026
Aug 11, 2026
Aug 26, 2026
6.5 MEDIUM
CVE-2026-19518 — Samsung rlottie Improper Validation of Specified Quantity in Input

Improper Validation of Specified Quantity in Input vulnerability in Samsung Open Source rlottie allows Input Data Manipulation.

rlottie | Remote | Injection
Aug 11, 2026 Aug 18, 2026
Aug 11, 2026
Aug 18, 2026
Showing 20 of 13969 Results