Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
4.3 MEDIUM
CVE-2026-72912 — CyberChef’s pretty-recipe parser vulnerable to client-side ReDoS / CPU exhaustion when pa…

CyberChef is a web app for encryption, encoding, compression, and data analysis. Prior to 11.3.0, CyberChef's pretty-recipe parser in src/core/Utils.mjs can exhaust client-side CPU when a malformed #…

cyberchef | Remote | Denial of Service
Aug 10, 2026 Aug 10, 2026
Aug 10, 2026
Aug 10, 2026
9.9 CRITICAL
CVE-2026-72911 — ERPNext: Possibility of server-side template injection due to missing validation

ERPNext is a free and open source Enterprise Resource Planning tool. Prior to 15.118.0 and 16.29.0, the validate_template and render_template calls in erpnext/accounts/doctype/process_statement_of_ac…

erpnext | Remote | Injection
Aug 10, 2026 Aug 10, 2026
Aug 10, 2026
Aug 10, 2026
7.1 HIGH
CVE-2026-72910 — ERPNext: Unauthorised modification of master data due to missing validation

ERPNext is a free and open source Enterprise Resource Planning tool. Prior to 15.112.0 and 16.22.0, the merge_account, pause_job_for_doc, trigger_job_for_doc, change_release_date, and update_cost_cen…

erpnext | Remote | Authorization
Aug 10, 2026 Aug 10, 2026
Aug 10, 2026
Aug 10, 2026
7.1 HIGH
CVE-2026-72909 — ERPNext: Broken Access Control on certain endpoints

ERPNext is a free and open source Enterprise Resource Planning tool. Prior to 15.112.0 and 16.23.0, the ReceivablePayableReport prepare_conditions path in erpnext/accounts/report/accounts_receivable/…

erpnext | Remote | Authorization
Aug 10, 2026 Aug 10, 2026
Aug 10, 2026
Aug 10, 2026
6.5 MEDIUM
CVE-2026-72908 — ERPNext: Possibility of SQL injection due to missing validation

ERPNext is a free and open source Enterprise Resource Planning tool. Prior to 15.109.0 and 16.20.0, the get_tax_template function in erpnext/accounts/doctype/tax_rule/tax_rule.py constructs an SQL WH…

erpnext | Remote | Injection
Aug 10, 2026 Aug 10, 2026
Aug 10, 2026
Aug 10, 2026
6.5 MEDIUM
CVE-2026-72907 — ERPNext: Broken Access Control on certain endpoint

ERPNext is a free and open source Enterprise Resource Planning tool. Prior to 15.111.0 and 16.22.0, the add_ac function in erpnext/accounts/utils.py accepts the ignore_permissions argument without en…

erpnext | Remote | Authorization
Aug 10, 2026 Aug 10, 2026
Aug 10, 2026
Aug 10, 2026
4.3 MEDIUM
CVE-2026-72906 — ERPNext: Unauthorised triggering of automated emails due to missing validation

ERPNext is a free and open source Enterprise Resource Planning tool. Prior to 15.111.0 and 16.22.0, the send_auto_email function in erpnext/accounts/doctype/process_statement_of_accounts/process_stat…

erpnext | Remote | Authorization
Aug 10, 2026 Aug 10, 2026
Aug 10, 2026
Aug 10, 2026
9.3 CRITICAL
CVE-2026-72904 — Firecrawl: Arbitrary file read via JSON Schema $ref expansion

Firecrawl turns entire websites into LLM-ready markdown or structured data. Prior to 2.11.32, a critical arbitrary file read vulnerability exists in Firecrawl's extraction functionality due to unsafe…

Remote | Path Traversal
Aug 10, 2026 Aug 10, 2026
Aug 10, 2026
Aug 10, 2026
8.1 HIGH
CVE-2026-72903 — Tabby: Windows SFTP path traversal allows a malicious server to write files outside the s…

Tabby (formerly Terminus) is a highly configurable terminal emulator. Prior to 1.0.235, a malicious SFTP server can return a backslash traversal filename through entry.name. In tabby-ssh/src/session/…

tabby | Remote | Path Traversal
Aug 10, 2026 Aug 10, 2026
Aug 10, 2026
Aug 10, 2026
5.4 MEDIUM
CVE-2026-72743 — SQLBot 1.10.0 SQText Dashboard Component Stored XSS via v-html

SQLBot through 1.10.0, fixed in commit c3f40a5, contains a stored cross-site scripting vulnerability in the SQText dashboard component that renders TinyMCE output via v-html without sanitization. Att…

sqlbot | Remote | Cross-Site Scripting
Aug 10, 2026 Aug 10, 2026
Aug 10, 2026
Aug 10, 2026
7.8 HIGH
CVE-2026-63622 — Libvirt: swtpm privilege escalation via symlink following

A flaw was found in libvirt. A local attacker, specifically a process running as the confined `swtpm` user, could exploit a symlink-following vulnerability in the `virFileChownFiles()` function. By p…

Aug 10, 2026 Aug 10, 2026
Aug 10, 2026
Aug 10, 2026
9.3 CRITICAL
CVE-2026-48160 — react-tracked was vulnerable to malicious code execution via compromised commits

react-tracked provides state usage tracking with Proxies. Between 2026-05-18 19:26:36 and 2026-05-19 15:22:45, the default branch contained malicious commits 6978272a7d6ca02225cb747ea69f427512e33699 …

Remote | Supply Chain
Aug 10, 2026 Aug 10, 2026
Aug 10, 2026
Aug 10, 2026
3.9 LOW
CVE-2026-19411 — Shim/dp.c library: null-pointer dereference in is_removable_media_path() when devicepatht…

A NULL pointer vulnerability has been found in the the shim application of dp.c library. A missing NULL pointer could allow attackers to perform a denial of service attack on a system that uses shim …

enterprise_linux enterprise_linux | Memory Corruption
Aug 10, 2026 Aug 10, 2026
Aug 10, 2026
Aug 10, 2026
8.8 HIGH
CVE-2026-18982 — Odh-training-operator-rhel9: rhoai fork aggregates training job create onto native edit/a…

A flaw was found in the RHOAI training-operator. This vulnerability allows a user with standard edit or admin roles in any Kubernetes namespace to escalate their privileges. Through the creation of t…

openshift_ai | Remote | Authorization
Aug 10, 2026 Aug 11, 2026
Aug 10, 2026
Aug 11, 2026
8.8 HIGH
CVE-2026-18951 — Odh-training-operator-rhel9: [trainer v2 security] trn-02: rhoai overlay aggregates train…

A flaw was found in the Red Hat OpenShift AI (RHOAI) overlay for the training operator. The RHOAI overlay incorrectly aggregates `trainjobs` management permissions into the native Kubernetes `edit Cl…

openshift_ai | Remote | Authorization
Aug 10, 2026 Aug 11, 2026
Aug 10, 2026
Aug 11, 2026
8.8 HIGH
CVE-2026-18950 — Odh-dashboard: odh-dashboard: confused-deputy privilege escalation via unchecked roleref …

A flaw was found in odh-dashboard. An authenticated user of the dashboard can exploit a vulnerability related to how RoleBindings are created. The system does not properly validate the `roleRef` fiel…

openshift_ai | Remote | Authorization
Aug 10, 2026 Aug 11, 2026
Aug 10, 2026
Aug 11, 2026
8.8 HIGH
CVE-2026-18949 — Odh-dashboard: odh-dashboard: clusterrole grants cluster-wide crud on secrets and rbac ma…

A flaw was found in odh-dashboard. This vulnerability allows an attacker, who has compromised the dashboard's Service Account (SA) token, to exploit overly broad permissions granted to the SA. This e…

openshift_ai | Remote | Authorization
Aug 10, 2026 Aug 11, 2026
Aug 10, 2026
Aug 11, 2026
9.9 CRITICAL
CVE-2026-18948 — Feast: feast: unsafe dill deserialization of registry-stored udfs — rce on feature server…

A flaw was found in Feast. The system improperly deserializes user-defined functions (UDFs) stored in its registry, which are serialized using the 'dill' library. This allows a remote attacker to sto…

openshift_ai | Remote | Authentication
Aug 10, 2026 Aug 11, 2026
Aug 10, 2026
Aug 11, 2026
8.5 HIGH
CVE-2026-18947 — Feast: feast: authorization bypass in /materialize endpoints enables dos via unauthorized…

A flaw was found in Feast. An authorization bypass vulnerability exists in the /materialize and /materialize-incremental endpoints. By sending a specially crafted request that omits the feature_views…

openshift_ai | Remote | Authorization
Aug 10, 2026 Aug 11, 2026
Aug 10, 2026
Aug 11, 2026
5.5 MEDIUM
CVE-2026-18942 — Feast-operator: feast: feast apply cronjob runs user python with feature-server sa — tena…

A flaw was found in the Feast operator. A malicious tenant could inject arbitrary code into their feature repository. This code would be executed by an automated process with elevated privileges, all…

openshift_ai | Remote | Injection
Aug 10, 2026 Aug 10, 2026
Aug 10, 2026
Aug 10, 2026
Showing 20 of 10131 Results