Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
8.2 HIGH
CVE-2026-97662 — Argument injection in the diff scan operation in AWS security-agent-mcp-server allows arb…

An argument injection issue in the diff scan operation in AWS security-agent-mcp-server before version 0.2.0 might allow context-dependent threat actors to create, overwrite, or truncate arbitrary fi…

| Injection
Oct 01, 2026 Oct 01, 2026
Oct 01, 2026
Oct 01, 2026
7.1 HIGH
CVE-2026-78578 — Unauthenticated do Method Onboarding Connect Allows Wi‑Fi Reconfiguration Denial of Servi…

Tapo C120 v1 and C200 v5 do not enforce authentication for do method HTTPS onboarding connect actions after initial setup.  An unauthenticated adjacent attacker can submit unauthorized wireless confi…

tapo_c200 tapo_c120 | Authentication
Oct 01, 2026 Oct 01, 2026
Oct 01, 2026
Oct 01, 2026
5.3 MEDIUM
CVE-2026-78577 — Unauthenticated Onboarding Scan Information Disclosure in TP-Link Tapo C120 & C200

Tapo C120 v1 and C200 V5 contain a vulnerability in the HTTPS onboarding scan function due to missing authentication. After initial setup, an unauthenticated attacker on the same local network can in…

tapo_c200 tapo_c120 | Authentication
Oct 01, 2026 Oct 01, 2026
Oct 01, 2026
Oct 01, 2026
7.1 HIGH
CVE-2026-73976 — djehuty: Unauthenticated SPARQL injection in the search API (`order`, `operator`, `key`)

djehuty is a research data repository system developed by 4TU.ResearchData. Prior to version 26.3.2, An unauthenticated attacker can inject SPARQL into the search/listing queries through three separa…

Remote | Injection
Oct 01, 2026 Oct 01, 2026
Oct 01, 2026
Oct 01, 2026
7.5 HIGH
CVE-2026-68496 — jackson-dataformats-binary: Smile parser does not enforce StreamReadConstraints.maxNameLe…

The Smile parser in FasterXML jackson-dataformats-binary never invokes StreamReadConstraints.validateNameLength() when decoding JSON object property names, so the maxNameLength limit is not enforced …

jackson-dataformats-binary | Remote | Denial of Service
Oct 01, 2026 Oct 01, 2026
Oct 01, 2026
Oct 01, 2026
7.5 HIGH
CVE-2026-68495 — jackson-dataformats-binary: CBOR parser does not enforce StreamReadConstraints.maxNameLen…

The CBOR parser in FasterXML jackson-dataformats-binary never invokes StreamReadConstraints.validateNameLength() when decoding JSON object property names, so the maxNameLength limit is not enforced f…

jackson-dataformats-binary | Remote | Denial of Service
Oct 01, 2026 Oct 01, 2026
Oct 01, 2026
Oct 01, 2026
4.3 MEDIUM
CVE-2026-56098 — Rubygem-katello: improper authorization logic allows resource enumeration

A flaw was found in rubygem-katello. The RegistryProxiesController in Katello contains an authorization bypass vulnerability due to an execution fall-through in the registry_authorize filter. While t…

satellite satellite | Remote | Authorization
Oct 01, 2026 Oct 02, 2026
Oct 01, 2026
Oct 02, 2026
6.5 MEDIUM
CVE-2026-56097 — Rubygem-katello: sql injection in registry proxy via labels

A flaw was found in rubygem-katello. An SQL injection vulnerability exists in the Red Hat Satellite Katello Registry Proxy. The application fails to sanitize input parameters used in database queries…

satellite satellite | Remote | Injection
Oct 01, 2026 Oct 02, 2026
Oct 01, 2026
Oct 02, 2026
6.7 MEDIUM
CVE-2026-12545 — Rubygem-hammer_cli: command injection via insecure editor invocation

A flaw was found in rubygem-hammer_cli. A command injection vulnerability exists in Hammer CLI and the Railties (Ruby on Rails) component distributed with Satellite due to the insecure interpolation …

satellite satellite | Injection
Oct 01, 2026 Oct 02, 2026
Oct 01, 2026
Oct 02, 2026
5.3 MEDIUM
CVE-2026-12542 — Foreman: command injection in foreman-tail

A flaw was found in Foreman. The foreman-tail utility is vulnerable to OS command injection due to the unsafe use of the eval command. The script takes user-supplied arguments and incorporates them d…

satellite satellite | Injection
Oct 01, 2026 Oct 02, 2026
Oct 01, 2026
Oct 02, 2026
8.8 HIGH
CVE-2026-104018 — VxWorks 7 improper privilege management

An improper privilege management vulnerability (CWE-269) exists in the command shell of Wind River VxWorks 7 when configured to enforce per-user command privileges. Under certain shell operations, a …

vxworks | Remote | Authorization
Oct 01, 2026 Oct 01, 2026
Oct 01, 2026
Oct 01, 2026
2.1 LOW
CVE-2026-103923 — KaTeX: Existing prototype pollution can bypass trust restrictions

KaTeX is a fast, easy-to-use JavaScript library for TeX math rendering on the web. From 0.11.0 until 0.18.2, KaTeX uses ordinary JavaScript property access for the renderer options object, the trust …

katex | Remote | Misconfiguration
Oct 01, 2026 Oct 01, 2026
Oct 01, 2026
Oct 01, 2026
9.3 CRITICAL
CVE-2026-103922 — Capacitor Android and iOS: remote content can be loaded at the app origin via the interna…

Capacitor is a cross-platform native runtime for web applications. From 6.0.0 until 6.2.2, 7.6.9, 8.3.5, 8.4.3, and 8.5.1, the Android and iOS WebView navigation guard validates a target URL's host a…

Remote | Server-Side Request Forgery
Oct 01, 2026 Oct 01, 2026
Oct 01, 2026
Oct 01, 2026
6.5 MEDIUM
CVE-2026-103884 — Keycloak-services: keycloak-services: path traversal in x.509 crl distribution point allo…

A flaw was found in the X.509 client certificate authenticator of Keycloak. When CRL Distribution Point checking is enabled, the server fails to properly validate the file paths provided in a client …

single_sign-on build_of_keycloak | Remote | Information Disclosure
Oct 01, 2026 Oct 01, 2026
Oct 01, 2026
Oct 01, 2026
8.7 HIGH
CVE-2026-102369 — Unauthenticated Remote Code Execution via MacTool Command Injection in TP-Link Tapo C120 …

Tapo C120 v1 and C200 V5 do not adequately protect login challenge data or sanitize attacker-controlled input processed by the MacTool handler. An unauthenticated attacker on the same local network c…

tapo_c200 tapo_c120 | Authentication
Oct 01, 2026 Oct 01, 2026
Oct 01, 2026
Oct 01, 2026
8.5 HIGH
CVE-2026-102294 — Authenticated OS Command Injection in TL-WR841N IPv6 WAN Configuration

TP-Link TL-WR841N contains an authenticated OS command injection vulnerability in the IPv6 WAN configuration. A crafted IPv6 Gateway value is improperly incorporated into a system command, allowing a…

tl-wr841n | Injection
Oct 01, 2026 Oct 01, 2026
Oct 01, 2026
Oct 01, 2026
8.2 HIGH
CVE-2023-54404 — Zod 4.6.5 Uncontrolled Resource Consumption via Array Validation

Zod schema-validation library through 4.6.5 contains an uncontrolled resource consumption vulnerability that allows attackers to exhaust memory by submitting a large array to an application using an …

zod | Remote | Denial of Service
Oct 01, 2026 Oct 01, 2026
Oct 01, 2026
Oct 01, 2026
9.1 CRITICAL
CVE-2026-96659 — Foreman: excessive permissions for viewer role on preview

A flaw was found in Foreman. This vulnerability allows an authenticated user with low-level Viewer permissions to cause unauthorized information disclosure by submitting requests to template preview …

Remote | Information Disclosure
Oct 01, 2026 Oct 02, 2026
Oct 01, 2026
Oct 02, 2026
9.9 CRITICAL
CVE-2026-96658 — Foreman: safemode bypass leading to rce

A flaw was found in Foreman. An authenticated attacker with low-level permissions can achieve remote code execution (RCE) by bypassing the safemode sandbox within the templating engine. Due to improp…

Remote | Authentication
Oct 01, 2026 Oct 02, 2026
Oct 01, 2026
Oct 02, 2026
8.8 HIGH
CVE-2026-93546 — Apache HTTP Server: mod_dav_fs namespace overflow

Integer overflow in mod_dav_fs in Apache HTTP Server through 2.4.68 allows an authenticated WebDAV client with write access to crash worker processes and persistently corrupt a directory's property d…

http_server | Remote | Denial of Service
Oct 01, 2026 Oct 01, 2026
Oct 01, 2026
Oct 01, 2026
Showing 20 of 14877 Results