LIVE FEED
1759 events · 4 sources · newest first
Events in view
1759
all sources
Critical
1485
severity
Active sources
4
collectors
Last sync
2026-08-25 18:00
UTC
2026-08-19
NVD CVE
CVE-2026-75976: A weakness has been identified in TRENDnet TEW-823DRU 1.1.02b01. Impacted is the
CRITICAL
A weakness has been identified in TRENDnet TEW-823DRU 1.1.02b01. Impacted is the function strcpy of the file /cgi-bin/wan.cgi of the component NVRAM. This manipulation of the argument wan_l2tp_password causes...
buffer-overflowcgi-bincve-2026-75976exploitnetwork-attached-storagenvd-cvenvrremote-attacks
2026-08-19
NVD CVE
CVE-2026-76312: In Splunk Enterprise versions below 10.4.1, 10.2.6, 10.0.9, and 9.4.14, an unaut
CRITICAL
In Splunk Enterprise versions below 10.4.1, 10.2.6, 10.0.9, and 9.4.14, an unauthenticated user who can read the Hypertext Markup Language (HTML) source of a page that embeds a Splunk report could use exposed session...
authorization-boundariescve-2026-76312dispatches-archivesembedded-reportshtml-sourcenvd-cvereport-managementsearch-job-data
2026-08-19
NVD CVE
CVE-2026-76310: In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an unaut
CRITICAL
In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an unauthenticated user who has an embedded report token could download the associated search job dispatch archive, recover session material,...
administrative-actionscve-2026-76310embedded-reportsnvd-cvereport-managementrest-apirole-based-accesssessions-materials
2026-08-19
NVD CVE
CVE-2026-76311: In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an unaut
CRITICAL
In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an unauthenticated user who has an embedded report token could download the dispatch archive for an embedded report search job and use exposed...
authorization-flowcve-2026-76311dispatches-archivesembedded-reportsnvd-cvereport-managementscheduled-reportssecurity-configuration
2026-08-19
NVD CVE
CVE-2026-76003: A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected
CRITICAL
A weakness has been identified in UTT HiPER 1200GW up to 2.5.3-170306. Affected is the function strcpy of the file /goform/formGroupConfig. Executing a manipulation of the argument timestart can lead to stack-based...
cve-2026-76003nvd-cveremote-attacksstack-based-buffer-overflowstrcpyuttutt-hyper-1200gwutt-hypers
2026-08-19
NVD CVE
CVE-2026-16919: IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to e
CRITICAL
IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a remote attacker to execute arbitrary code due to improper validation of network-supplied pointers.
aixarbitrary-code-executioncve-2026-16919ibmimproper-validationnetwork-supplied-pointernvd-cvepowervm
2026-08-19
NVD CVE
CVE-2026-70496: A flaw was found in search-v2-operator. The operator's ClusterRole has permissio
CRITICAL
A flaw was found in search-v2-operator. The operator's ClusterRole has permissions equivalent to a cluster administrator, allowing it to impersonate other entities, write Role-Based Access Control (RBAC)...
certificates-signing-requestcluster-administratorsclusterrolecve-2026-70496excessive-privilegeimpersonationkubernetemanifestwork
2026-08-18
NVD CVE
CVE-2026-75626: SpiderFoot fails to HTML-escape correlation titles built from external scan data
CRITICAL
SpiderFoot fails to HTML-escape correlation titles built from external scan data sources including server banners and metadata. Attackers can inject malicious HTML elements with event handlers into correlation...
api-keys-theftcorrelationcross-site-scriptingcve-2026-75626event-handlerexternal-datahtml-escapemalicious-html
2026-08-18
NVD CVE
CVE-2026-62613: Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middlewar
CRITICAL
Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication). The supported version that is affected is 12.2.1.19.0. Easily exploitable vulnerability...
confidentiality-impactcritical-data-accesscve-2026-62613cvss-31data-compromiseintegrity-impactmiddleware-vulnerabilitiesnvd-cve
2026-08-18
NVD CVE
CVE-2026-70855: Vulnerability in the Siebel Apps - Self Service product of Oracle Siebel CRM (co
CRITICAL
Vulnerability in the Siebel Apps - Self Service product of Oracle Siebel CRM (component: Helpdesk/Training). Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows...
2026-08-18
NVD CVE
CVE-2026-70740: Vulnerability in the Oracle Hyperion Financial Reporting product of Oracle Hyper
CRITICAL
Vulnerability in the Oracle Hyperion Financial Reporting product of Oracle Hyperion (component: Server). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows...
2026-08-18
NVD CVE
CVE-2026-70739: Vulnerability in the Oracle Hyperion Financial Reporting product of Oracle Hyper
CRITICAL
Vulnerability in the Oracle Hyperion Financial Reporting product of Oracle Hyperion (component: Server). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows...
availabilityconfidentialitycve-2026-70739cvss-31httpintegritynetwork-accessnvd-cve
2026-08-18
NVD CVE
CVE-2026-70854: Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hype
CRITICAL
Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows...
2026-08-18
NVD CVE
CVE-2026-70862: Vulnerability in Oracle Application Testing Suite. The supported version that
CRITICAL
Vulnerability in Oracle Application Testing Suite. The supported version that is affected is 13.3.0.1. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise...
2026-08-18
NVD CVE
CVE-2026-70673: Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middlewar
CRITICAL
Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication). The supported version that is affected is 14.1.2.0.0. Easily exploitable vulnerability...
confidentiality-impactcve-2026-70673cvss-31data-compromisehttpintegrity-impactnetwork-accessnvd-cve
2026-08-18
NVD CVE
CVE-2026-70668: Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middlewar
CRITICAL
Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication). The supported version that is affected is 14.1.2.0.0. Easily exploitable vulnerability...
confidentiality-impactcve-2026-70668cvss-31data-compromiseintegrity-impactnvd-cveoracleoracle-fusion-middleware
2026-08-18
NVD CVE
CVE-2026-70689: Vulnerability in Oracle Essbase (component: Infrastructure). The supported ver
CRITICAL
Vulnerability in Oracle Essbase (component: Infrastructure). The supported version that is affected is 21.8.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to...
availabilityconfidentialitycve-2026-70689cvss-31cvss-98httpinfrastructureintegrity
2026-08-18
NVD CVE
CVE-2026-70730: Vulnerability in the Oracle Hyperion Profitability and Cost Management product o
CRITICAL
Vulnerability in the Oracle Hyperion Profitability and Cost Management product of Oracle Hyperion (component: Deployment). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability...
confidentiality-impactcritical-datacve-2026-70730cvss-31data-compromisehttphyperion-profitability-and-costs-managementintegrity-impact
2026-08-18
NVD CVE
CVE-2026-62611: Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middlewar
CRITICAL
Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication). The supported version that is affected is 12.2.1.19.0. Easily exploitable vulnerability...
availability-impactcompromiseconfidentiality-impactcve-2026-62611cvss-31cvss-98iiopintegrity-impact
2026-08-18
NVD CVE
CVE-2026-62617: Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middlewar
CRITICAL
Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication). The supported version that is affected is 12.2.1.19.0. Easily exploitable vulnerability...
availability-impactconfidentiality-impactcve-2026-62617cvss-31cvss-98integrity-impactnetwork-accessnvd-cve
2026-08-18
NVD CVE
CVE-2026-70871: Vulnerability in the Oracle Hyperion Data Relationship Management product of Ora
CRITICAL
Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Easily exploitable...
2026-08-18
NVD CVE
CVE-2026-70977: Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience
CRITICAL
Vulnerability in the Oracle Commerce Guided Search / Oracle Commerce Experience Manager product of Oracle Commerce (component: Content Acquisition System). The supported version that is affected is 11.4.0. Easily...
availability-impactcve-2026-70977cvss-31data-creationdata-deletiondata-modificationdosdose-attack
2026-08-18
NVD CVE
CVE-2026-61001: Vulnerability in the Oracle Web Services Manager product of Oracle Fusion Middle
CRITICAL
Vulnerability in the Oracle Web Services Manager product of Oracle Fusion Middleware (component: Web Services Security). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable...
confidentiality-impactcve-2026-61001cvss-31data-modificationhttpintegrity-impactlow-privileged-attackernetwork-access
2026-08-18
NVD CVE
CVE-2026-74943: Use-after-free in the Graphics: ImageLib component. This vulnerability was fixed
CRITICAL
Use-after-free in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
cve-2026-74943firefoxfreegraphicimagelibmozillanvd-cvepatch
2026-08-18
NVD CVE
CVE-2026-60977: Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware
CRITICAL
Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: WLS Core Components). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0 and 14.1.2.0.0. Easily exploitable...
availability-impactconfidentiality-impactcve-2026-60977cvss-31integrity-impactnetwork-accessnvd-cveoracle
2026-08-18
NVD CVE
CVE-2026-61003: Vulnerability in the Oracle Managed File Transfer product of Oracle Fusion Middl
CRITICAL
Vulnerability in the Oracle Managed File Transfer product of Oracle Fusion Middleware (component: MFT Runtime Server). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable...
availability-impactconfidentiality-impactcve-2026-61003cvss-31data-breachesiiop-protocolintegrity-impactnetworks-vulnerabilities
2026-08-18
NVD CVE
CVE-2026-62544: Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle
CRITICAL
Vulnerability in the Oracle Hyperion Infrastructure Technology product of Oracle Hyperion (component: Installation and Configuration). The supported version that is affected is 11.2.25.0.000. Easily exploitable...
2026-08-18
NVD CVE
CVE-2026-62582: Vulnerability in the Oracle Hyperion Calculation Manager product of Oracle Hyper
CRITICAL
Vulnerability in the Oracle Hyperion Calculation Manager product of Oracle Hyperion (component: Security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows low...
2026-08-18
NVD CVE
CVE-2026-60990: Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion
CRITICAL
Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability...
cve-2026-60990cvss-31cvss-99network-securitynvd-cveoracleoracle-fusionoracle-identity-manager-connector
2026-08-18
NVD CVE
CVE-2026-60995: Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion
CRITICAL
Vulnerability in the Oracle Identity Manager Connector product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability...
cve-2026-60995cvss-31cvss-99network-securitynvd-cveoracleoracle-fusionoracle-identity-manager-connector
2026-08-18
NVD CVE
CVE-2026-74936: Use-after-free in the JavaScript: WebAssembly component. This vulnerability was
CRITICAL
Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
browsers-vulnerabilitiescode-executioncve-2026-74936firefoxfirefox-esrfreejavascriptmemory-corruption
2026-08-18
NVD CVE
CVE-2026-62608: Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middlewar
CRITICAL
Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication). The supported version that is affected is 12.2.1.19.0. Easily exploitable vulnerability...
2026-08-18
NVD CVE
CVE-2026-62609: Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middlewar
CRITICAL
Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication). The supported version that is affected is 12.2.1.19.0. Easily exploitable vulnerability...
2026-08-18
NVD CVE
CVE-2026-61241: Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middlewa
CRITICAL
Vulnerability in the Oracle Internet Directory product of Oracle Fusion Middleware (component: OID LDAP Server). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability...
availability-impactcompromiseconfidentiality-impactcve-2026-61241cvss-100cvss-31integrity-impactldap
2026-08-18
NVD CVE
CVE-2026-62610: Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middlewar
CRITICAL
Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication). The supported version that is affected is 12.2.1.19.0. Easily exploitable vulnerability...
confidentiality-impactcritical-datacve-2026-62610cvss-31data-compromisehttpintegrity-impactnetwork-access
2026-08-18
NVD CVE
CVE-2026-62640: Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middlewar
CRITICAL
Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication). The supported version that is affected is 14.1.2.0.0. Easily exploitable vulnerability...
availabilityconfidentialitycve-2026-62640cvss-31iiopintegritynetwork-accessnvd-cve
2026-08-18
NVD CVE
CVE-2026-70669: Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middlewar
CRITICAL
Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication). The supported version that is affected is 14.1.2.0.0. Easily exploitable vulnerability...
availabilityconfidentialitycve-2026-70669cvss-31httpintegritynetwork-accessnvd-cve
2026-08-18
NVD CVE
CVE-2026-70670: Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middlewar
CRITICAL
Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication). The supported version that is affected is 14.1.2.0.0. Easily exploitable vulnerability...
2026-08-18
NVD CVE
CVE-2026-62614: Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middlewar
CRITICAL
Vulnerability in the Oracle Reports Developer product of Oracle Fusion Middleware (component: Security and Authentication). The supported version that is affected is 12.2.1.19.0. Easily exploitable vulnerability...
availabilityconfidentialitycve-2026-62614cvss-31httpintegritynetwork-accessnvd-cve
2026-08-18
NVD CVE
CVE-2026-61066: Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware
CRITICAL
Vulnerability in the Oracle Identity Manager product of Oracle Fusion Middleware (component: OIM Legacy UI). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability...
availabilityconfidentialitycve-2026-61066cvss-31integritylow-privileged-attackernetwork-accessnvd-cve