Articles tagged "CVE"

Found 571 articles

Actively Exploited

The Cybersecurity and Infrastructure Security Agency (CISA) has added a new vulnerability, identified as CVE-2026-63077, related to JetBrains TeamCity to its Known Exploited Vulnerabilities Catalog. This vulnerability involves the deserialization of untrusted data, which has been a common method for cybercriminals to exploit systems. The risk is particularly significant for federal agencies, as CISA's guidance emphasizes the need for rapid remediation of such vulnerabilities. While this directive primarily targets Federal Civilian Executive Branch agencies, CISA encourages all organizations to adopt similar risk-based strategies for managing vulnerabilities. The agency will continue to update the catalog with new vulnerabilities that show evidence of active exploitation, and organizations are invited to report any known exploited vulnerabilities that are not yet listed.

Read Original

A newly discovered vulnerability in the Linux kernel's Open vSwitch datapath allows local users to gain root access on several default-configured distributions. This memory corruption flaw, identified as CVE-2026-64531 and given the codename OVSwrap, has a CVSS score of 7.8, indicating a high severity. Security researcher Asim disclosed this issue, which comes with a public exploit that has pre-built records for about 800 different kernel builds. This broad impact means that many users could be affected if they have systems running these vulnerable kernel versions. Companies and system administrators should take immediate action to assess their environments and apply necessary patches to mitigate this risk.

Read Original

A serious vulnerability has been discovered in Gitea, the self-hosted Git service, that allows unauthenticated attackers to read any file that the service account can access. This flaw affects versions 1.22.1 through 1.27.0, requiring only a public repository and some specially crafted Org-mode markup to exploit. The vulnerability, tracked as CVE-2026-59774, has been rated Critical with a CVSS score of 9.8, indicating a severe risk. Users of affected Gitea versions should update to version 1.27.1 or later to secure their systems against this issue, as the flaw poses a significant risk of data exposure without needing any login credentials.

Read Original

On August 5, 2026, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) added three vulnerabilities to its Known Exploited Vulnerabilities catalog, indicating that they are being actively exploited. The most severe of these is CVE-2026-9198, a code injection flaw in Langflow that allows attackers to execute remote code without authentication, scoring 9.8 on the CVSS scale. Additionally, vulnerabilities in Tomcat and N-central were also flagged. These flaws pose significant risks to users and organizations relying on these platforms, as they could lead to unauthorized access and control over systems. Companies using these products should take immediate action to mitigate the risks associated with these vulnerabilities.

Read Original
CVE-2026-58048: cPanel Bug Enables Full Database Administrator Access

Security Affairs

A serious vulnerability in cPanel, tracked as CVE-2026-58048, has been discovered, allowing authenticated users to execute SQL commands with root privileges. This flaw, which has a CVSS score of 9.4, poses a significant risk to shared hosting environments where multiple users have access. Essentially, if you're running a shared hosting box, this bug could enable an ordinary user to gain full database administrator access, potentially compromising sensitive data. cPanel has issued patches to address this issue, and users are strongly advised to update their systems immediately to prevent exploitation. Given the nature of shared hosting, the implications of this vulnerability could be far-reaching, affecting not just individual sites but the entire server.

Read Original

A serious vulnerability has been identified in several Thermo Fisher Applied Biosystems Genetic Analyzers, which could allow attackers to tamper with DNA data by modifying output files. This flaw affects multiple versions of their software, including the 3500 Series, 3730 Series, SeqStudio, and GeneMapper ID-X, among others. The risk is significant because altered DNA test results could lead to incorrect diagnoses and treatments in healthcare settings. To mitigate the issue, Thermo Fisher has released security updates that implement digital signatures to ensure data integrity. Users are advised to update their software to the latest versions as soon as possible and to follow interim measures to secure their data until the updates can be applied.

Read Original
Critical
Acrisure KARR BT and DR-100

All CISA Advisories

Acrisure's KARR BT and DR-100 vehicle security systems have a serious vulnerability that could allow attackers to control vehicles remotely. The issue stems from a hard-coded Bluetooth authentication key shared among affected devices, which could let someone within range unlock doors or disable the engine. This affects all KARR BT firmware versions before July 20, 2026, and DR-100 firmware versions before the same date. While no public exploitation of this vulnerability has been reported yet, users are urged to update their devices to mitigate the risk. A firmware update has been released on July 20, 2026, to address this flaw, and users can find detailed instructions for the update on the KARR Security website.

Read Original
Actively Exploited

The Cybersecurity and Infrastructure Security Agency (CISA) has added three vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, signaling active exploitation. The vulnerabilities include a code injection issue in IBM Langflow (CVE-2026-9198), an authentication bypass in N-able N-central (CVE-2026-18556), and a lack of encryption for sensitive data in Apache Tomcat (CVE-2026-34486). These vulnerabilities are significant threats to federal agencies and other organizations, as they can allow attackers to gain control over affected systems. CISA's Binding Operational Directive 26-04 emphasizes the need for rapid remediation of these high-risk vulnerabilities, urging federal agencies to act promptly. While the directive specifically targets federal agencies, CISA encourages all organizations to prioritize addressing these vulnerabilities to enhance their security posture.

Read Original

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a significant vulnerability, tracked as CVE-2026-18577, to its Known Exploited Vulnerabilities catalog. This flaw affects N-able N-central, a platform used for IT management and monitoring. With a CVSS score of 8.2, the vulnerability allows attackers to bypass authentication, potentially granting them unauthorized access to sensitive systems. Organizations using N-able N-central should be particularly vigilant as this vulnerability poses a serious risk to their operations and data security. It's crucial for affected users to take immediate action to mitigate any potential exploitation.

Read Original

cPanel has addressed a serious vulnerability that allowed authenticated users to execute SQL commands with root database privileges. This flaw, tracked as CVE-2026-58048 and rated 9.4 on the CVSS scale, breaks the security boundary between individual cPanel accounts and the server's administrative database identity. The issue was fixed in a recent security update, which also addressed two other privilege escalation paths. Hosting customers who use cPanel should be aware of this vulnerability, as it could have allowed unauthorized access to sensitive data or manipulation of critical database functions. It's crucial for users to ensure they are using the latest version of cPanel to mitigate any potential risks associated with this flaw.

Read Original

N-able has reported that attackers exploited two vulnerabilities in their N-central servers, specifically CVE-2026-18556 and CVE-2026-18577. These vulnerabilities allowed unauthorized users to bypass authentication and gain remote administrative access to the affected systems. This incident poses a significant risk to organizations using N-central, as it could lead to unauthorized control over server functions and access to sensitive data. Users of N-central should take immediate action to secure their servers, as the vulnerabilities are actively being exploited. The situation emphasizes the need for vigilance in monitoring and updating security measures to protect against such threats.

Read Original

Attackers are taking advantage of an authentication bypass vulnerability (CVE-2026-18577) in N-able N-central, a remote monitoring and management solution used by managed service providers. This flaw allows unauthorized access to managed endpoints, posing significant risks to organizations relying on N-central for their IT operations. The vulnerability was first noticed on July 31, 2026, when N-able experienced an unusual spike in licensing issues among its on-premises customers, prompting an investigation by their engineering and security teams. Given the widespread use of N-central, this incident could potentially affect numerous businesses and their clients. Organizations using this software should act quickly to mitigate the risk of exploitation.

Read Original

A serious vulnerability, identified as CVE-2026-66066 and dubbed 'KindaRails2Shell', has been discovered in Ruby on Rails, a popular framework for web applications. This flaw allows attackers to exploit a website's image-upload feature to upload malicious files, potentially enabling them to access sensitive server files and, in some cases, gain full control of the server. This issue puts a wide range of Ruby on Rails applications at risk, affecting developers and organizations that rely on this framework for their web services. The implications are significant, as compromised servers could lead to data breaches and unauthorized access to critical information. Immediate attention is needed to secure these systems and prevent potential exploitation.

Read Original

Thermo Fisher Scientific has addressed a significant vulnerability in its Applied Biosystems human identification software. The flaw, tracked as CVE-2026-17583, could allow unauthorized alterations to DNA data files (.fsa and .hid) before they are processed by analysis software, potentially making tampering nearly undetectable. This issue arises when laboratory controls are bypassed, posing risks to the integrity of DNA analysis results, which can have critical implications in forensic and clinical settings. The company issued a security bulletin on July 31, highlighting the urgency of applying the patch to prevent misuse. Users of the affected software need to ensure they have the latest updates to protect against this vulnerability.

Read Original

N-able reported that attackers exploited an authentication bypass vulnerability in its N-central platform, allowing unauthorized remote administrative access to customer systems. This issue, tracked as CVE-2026-18577, affects all N-central builds prior to version 2026.3.1.7. The initial fix released by N-able was incomplete, leading to successful exploitation of the flaw. The company released the first unaffected version on August 2, 2023, which highlights the critical need for users to ensure they are running the latest version to protect their systems. Organizations using N-central should take immediate action to update to version 2026.3.1.7 or later to mitigate the risk of these attacks.

Read Original
PreviousPage 9 of 39Next