CVE-2026-0065: Schwachstellen-Eintrag (NVD)
In areBackgroundActivityStartsAllowed of BackgroundLaunchProcessController.java, there is a possible unintended way to launch activities in the background due to a logic error in the code. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.
Zero-Day & Vulnerability Intelligence Hub
Echtzeit-Tracking mit EPSS Exploit-Wahrscheinlichkeiten, Angriffsvektor-Decodern und KI-Patch-Anleitungen.
📊 Historien-Charts — Criticals-Trend · Vendors · EPSS-Verteilung
| Tier | 2026-08-29 | 2026-09-15 |
|---|---|---|
| ≥90 % | 4 | 0 |
| ≥50 % | 4 | 0 |
| ≥10 % | 3 | 0 |
| <10 % | 304 | 300 |
Acronis Backup Plugin Vulnerability in cPanel and Plesk Exploited in the Wild
Acronis has released security updates for its Backup plugin for cPanel &amp; WHM and Backup extension for Plesk after identifying limited, targeted exploitation of a high-severity local privilege-escalation vulnerability in the wild. Tr
PoC Exploit Released for Apache Superset SQL Injection Vulnerability
A public proof-of-concept (PoC) exploit has been released for CVE-2026-23980, a SQL injection vulnerability affecting Apache Superset versions prior to 6.0.0. The vulnerability could enable authenticated users with read-level permissions to
Enterprises Warned of Attacks Exploiting WSO2 Vulnerability
The vulnerability, tracked as CVE-2026-5430, can be exploited to gain access to valuable enterprise data. The post Enterprises Warned of Attacks Exploiting WSO2 Vulnerability appeared first on SecurityWeek. Weiterlesen
CVE-2024-44981 | Linux Kernel up to 6.10.6 workqueue shift_and_mask denial of service (90a6a844b2d9/38f7e14519d3 / WID-SEC-2024-2057)
A vulnerability classified as problematic has been found in Linux Kernel up to 6.10.6. The impacted element is the function shift_and_mask of the component workqueue. The manipulation leads to denial of service. This vulnerability is traded
CVE-2024-44980 | Linux Kernel up to 6.10.6 DRM memory leak (f7ecdd9853dd/f4b2a0ae1a31 / Nessus ID 212724)
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.10.6. This impacts an unknown function of the component DRM. This manipulation causes memory leak. This vulnerability is handled as CVE-2024-44980. Th
CVE-2024-44979 | Linux Kernel up to 6.10.6 DRM xe_gt_pagefault memory leak (b09ef3b762a7/a6f78359ac75 / Nessus ID 212724)
A vulnerability described as problematic has been identified in Linux Kernel up to 6.10.6. The affected element is the function xe_gt_pagefault of the component DRM. Executing a manipulation can lead to memory leak. This vulnerability appea
CVE-2024-44977 | Linux Kernel up to 6.1.106/6.6.47/6.10.6 AMD GPU out-of-bounds write (Nessus ID 208099 / WID-SEC-2024-2057)
A vulnerability marked as critical has been reported in Linux Kernel up to 6.1.106/6.6.47/6.10.6. Impacted is an unknown function of the component AMD GPU. Performing a manipulation results in out-of-bounds write. This vulnerability is repo
CVE-2024-44978 | Linux Kernel up to 6.10.6 DRM xe_exec_queue_put use after free (98aa0330f200/9e7f30563677 / Nessus ID 212724)
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.10.6. This affects the function xe_exec_queue_put of the component DRM. The manipulation results in use after free. This vulnerability is cataloged as CVE-2
CVE-2024-44976 | Linux Kernel up to 6.10.6 DMA Table drivers/ata/pata_macio.c denial of service (709e4c8f78e1/822c8020aebc / WID-SEC-2024-2057)
A vulnerability labeled as critical has been found in Linux Kernel up to 6.10.6. This issue affects some unknown processing of the file drivers/ata/pata_macio.c of the component DMA Table Handler. Such manipulation leads to denial of servic
CVE-2024-44973 | Linux Kernel up to 6.10.4 mm/slub.c do_slab_free denial of service (b35cd7f1e969/a371d558e6f3 / Nessus ID 212724)
A vulnerability was found in Linux Kernel up to 6.10.4. It has been rated as problematic. This impacts the function do_slab_free of the file mm/slub.c. Performing a manipulation results in denial of service. This vulnerability is cataloged
CVE-2024-44972 | Linux Kernel up to 6.6.45/6.10.4 btrfs extent_write_locked_range buffer overflow (ba4dedb71356/d3b403209f76/97713b1a2ced / Nessus ID 212724)
This issue looks like a false-positive. Please review the listed sources and think about not using this entry. Weiterlesen
Public PoC Released for Apache Superset SQL Injection Vulnerability
A public proof-of-concept exploit has been released for CVE-2026-23980, a SQL injection vulnerability affecting Apache Superset versions before 6.0.0. The flaw could allow authenticated users with read-level access to trigger error-based SQ
Acronis Plugin Vulnerability in cPanel and Plesk Exploited in the Wild
Acronis has released security updates for its Backup plugin for cPanel &amp; WHM and Backup extension for Plesk after detecting limited, targeted exploitation of a high-severity local privilege-escalation vulnerability in the wild. Trac
September-Updates schließen 180 Sicherheitslücken in Android – Pixel Update stopft 0-Day-Lücke
Mit dem Android Security Bulletin für September 2026 dokumentiert Google die Schwachstellen des Mobilbetriebssystems, die dessen Entwickler in den offenliegenden Quelltexten beseitigt haben. Üblicherweise geschieht dies am ersten Montag des
September-Updates schließen 180 Sicherheitslücken in Android – Pixel Update stopft 0-Day-Lücke
Mit dem Android Security Bulletin für September 2026 dokumentiert Google die Schwachstellen des Mobilbetriebssystems, die dessen Entwickler in den offenliegenden Quelltexten beseitigt haben. Üblicherweise geschieht dies am ersten Montag des
Cisco zero-day goes straight to root, BambooToken branches into Linux, CenterPoint breach claim hits 7M+
Cisco zero-day goes straight to root BambooToken branches into Linux CenterPoint breach claim hits 7M+ Get the show notes here: https://cisoseries.com/cybersecurity-news-september-16-2026/ Huge thanks to our episode sponsor, Vanta Risk and
CVE-2026-42167: ProFTPD mod_sql RCE and How to Analyze the Exploit-DB PoC
A public exploit for CVE-2026-42167, a ProFTPD mod_sql vulnerability, is now available on Exploit-DB. The vulnerability has a CVSS v3.1 score of 8.1, and Exploit-DB published EDB-ID 52658 on August 25, 2026. But the interesting part isn
CVE-2026-28616 | Google Android Setup Wizard privileges management
A vulnerability was found in Google Android. It has been rated as very critical. Affected by this issue is some unknown functionality of the component Setup Wizard. This manipulation causes improper privilege management. This vulnerability
CVE-2026-28612 | Google Android 16/16-qpr2/17 ActivityStarter ActivityStarter.java resolveActivity redirect
A vulnerability identified as problematic has been detected in Google Android 16/16-qpr2/17. This vulnerability affects the function resolveActivity of the file ActivityStarter.java of the component ActivityStarter. Performing a manipulatio
CVE-2026-28609 | Google Android 14/15/16/16-qpr2 MatroskaExtractor.cpp out-of-bounds write
A vulnerability classified as very critical has been found in Google Android 14/15/16/16-qpr2. Affected by this issue is some unknown functionality of the file MatroskaExtractor.cpp. Performing a manipulation results in out-of-bounds write.
CVE-2026-28604 | Google Android up to 17 use after free
A vulnerability classified as very critical was found in Google Android 14/15/16/16-qpr2/17. This affects an unknown part. Executing a manipulation can lead to use after free. The identification of this vulnerability is CVE-2026-28604. The
CVE-2026-28620 | Google Android 16/16-qpr2/17 privileges management
A vulnerability described as very critical has been identified in Google Android 16/16-qpr2/17. The affected element is an unknown function. The manipulation results in improper privilege management. This vulnerability is known as CVE-2026-
CVE-2026-28614 | Google Android up to 17 SlicePermissionActivity SlicePermissionActivity.java onCreate privileges management
A vulnerability marked as problematic has been reported in Google Android 14/15/16/16-qpr2/17. Impacted is the function onCreate of the file SlicePermissionActivity.java of the component SlicePermissionActivity. The manipulation leads to im
CVE-2026-28613 | Google Android up to 17 ChannelImpl ChannelImpl.java initAppLinkTypeAndIntent input validation
A vulnerability labeled as critical has been found in Google Android 14/15/16/16-qpr2/17. This issue affects the function initAppLinkTypeAndIntent of the file ChannelImpl.java of the component ChannelImpl. Executing a manipulation can lead
CVE-2026-28617 | Google Android 15/16/16-qpr2/17 WifiNetworkSuggestionsManager WifiNetworkSuggestionsManager.java resource consumption
A vulnerability categorized as problematic has been discovered in Google Android 15/16/16-qpr2/17. This affects an unknown part of the file WifiNetworkSuggestionsManager.java of the component WifiNetworkSuggestionsManager. Such manipulation
CVE-2026-28618 | Google Android 16/16-QPR2/17 oapv.c dec_frm_prepare heap-based overflow
A vulnerability was found in Google Android 16/16-QPR2/17. It has been classified as very critical. Affected is the function dec_frm_prepare of the file oapv.c. The manipulation leads to heap-based buffer overflow. This vulnerability is lis
CVE-2026-28611 | Google Android 15/16 NFC Payment Session NfcService.java privileges management
A vulnerability has been found in Google Android 15/16 and classified as very critical. This affects an unknown function of the file NfcService.java of the component NFC Payment Session. Performing a manipulation results in improper privile
CVE-2026-28607 | Google Android 15/16/16-qpr2/17 privileges management
A vulnerability, which was classified as very critical, was found in Google Android 15/16/16-qpr2/17. The impacted element is an unknown function. Such manipulation leads to improper privilege management. This vulnerability is referenced as
CVE-2026-28603 | Google Android up to 17 AppRestrictionsFragment.java assertSafeToStartCustomActivity privileges management
A vulnerability, which was classified as problematic, has been found in Google Android 14/15/16/16-qpr2/17. The affected element is the function assertSafeToStartCustomActivity of the file AppRestrictionsFragment.java. This manipulation cau
CVE-2026-28596 | Google Android 14/15/16/16-qpr2 GameManagerService.java parseInterventionFromXml resource consumption
A vulnerability was found in Google Android 14/15/16/16-qpr2. It has been classified as problematic. The impacted element is the function parseInterventionFromXml of the file GameManagerService.java. Performing a manipulation results in res
CVE-2026-28600 | Google Android 15/16/16-qpr2/17 PaymentDefaultDialog.java onCreate privileges management
A vulnerability was found in Google Android 15/16/16-qpr2/17 and classified as very critical. This impacts the function onCreate of the file PaymentDefaultDialog.java. Executing a manipulation can lead to improper privilege management. This
CVE-2026-28602 | Google Android up to 17 ClipboardService ClipboardService.java setClipboardAccessNotificationsEnabledForUser isolation
A vulnerability classified as problematic was found in Google Android 14/15/16/16-qpr2/17. Impacted is the function setClipboardAccessNotificationsEnabledForUser of the file ClipboardService.java of the component ClipboardService. The manip
CVE-2026-28599 | Google Android 16/16-qpr2/17 ActivityManagerService ActivityManagerService.java addCreatorToken privileges management
A vulnerability classified as problematic has been found in Google Android 16/16-qpr2/17. This issue affects the function addCreatorToken of the file ActivityManagerService.java of the component ActivityManagerService. The manipulation lead
CVE-2026-28594 | Google Android 16-qpr2/17 use after free
A vulnerability described as very critical has been identified in Google Android 16-qpr2/17. This vulnerability affects unknown code. Executing a manipulation can lead to use after free. This vulnerability is handled as CVE-2026-28594. The
CVE-2026-28590 | Google Android 14/15/16/16-qpr2 privileges management
A vulnerability marked as very critical has been reported in Google Android 14/15/16/16-qpr2. This affects an unknown part. Performing a manipulation results in improper privilege management. This vulnerability is known as CVE-2026-28590. R
CVE-2026-28593 | Google Android up to 17 Settings SettingsFragment.java getItemList privileges management
A vulnerability labeled as very critical has been found in Google Android 14/15/16/16-qpr2/17. Affected by this issue is the function getItemList of the file SettingsFragment.java of the component Settings. Such manipulation leads to improp
CVE-2026-28584 | Google Android 16-qpr2/17 Package Installer PackageInstallerService.java createSessionInternal behavioral workflow
A vulnerability identified as critical has been detected in Google Android 16-qpr2/17. Affected by this vulnerability is the function createSessionInternal of the file PackageInstallerService.java of the component Package Installer. This ma
CVE-2026-28583 | Google Android 14/15/16/16-qpr2 Camera Metadata Validation camera_metadata.c validate_camera_metadata_structure out-of-bounds write
A vulnerability categorized as problematic has been discovered in Google Android 14/15/16/16-qpr2. Affected is the function validate_camera_metadata_structure of the file camera_metadata.c of the component Camera Metadata Validation. The ma
CVE-2026-28582 | Google Android up to 17 Permission Check ConfirmDeviceCredentialActivity.java onCreate permission
A vulnerability was found in Google Android 14/15/16/16-qpr2/17 and classified as problematic. The affected element is the function onCreate of the file ConfirmDeviceCredentialActivity.java of the component Permission Check. Such manipulati
CVE-2026-71269 | Node-RED Storage library.js getLibraryEntry/saveLibraryEntry path path traversal
This issue was flagged as a false-positive. Please consult the sources mentioned and consider not using this entry at all. Weiterlesen
Google fixes actively exploited Android zero-day on Pixel devices
Google has released the September 2026 security patches to address 110 vulnerabilities affecting its Pixel devices, including one zero-day flaw actively exploited in targeted attacks. [...] Weiterlesen
WooCommerce-Plugin CVE-2026-27540: Angreifer platzieren PHP-Webshells
LONDON (IT BOLTWISE) – Angreifer nutzen eine kritische Schwachstelle im WooCommerce-Plugin „Wholesale Lead Capture“, um ohne Login beliebige Dateien hochzuladen. Dabei können sie PHP-Webshells einschleusen und so auf dem Server der betroffe
CVE-2022-44139 | oretnom23 Apartment Visitor Management System 1.0 /avms/index.php sql injection (EUVD-2022-47089)
A vulnerability was found in oretnom23 Apartment Visitor Management System 1.0. It has been rated as critical. Impacted is an unknown function of the file /avms/index.php. Performing a manipulation results in sql injection. This vulnerabili
CVE-2022-44137 | SourceCodester Sanitization Management System 1.0 sql injection (EUVD-2022-47087)
A vulnerability was found in SourceCodester Sanitization Management System 1.0. It has been rated as critical. Impacted is an unknown function. Performing a manipulation results in sql injection. This vulnerability is known as CVE-2022-4413
CVE-2022-44120 | dedecmdv6 6.1.9 sys_sql_query.php sql injection (EUVD-2022-47071)
A vulnerability classified as critical has been found in dedecmdv6 6.1.9. The affected element is an unknown function of the file sys_sql_query.php. This manipulation causes sql injection. This vulnerability is tracked as CVE-2022-44120. Th
CVE-2022-44118 | dedecmdv6 6.1.9 file_manage_control.php privilege escalation (EUVD-2022-47069)
A vulnerability labeled as critical has been found in dedecmdv6 6.1.9. This vulnerability affects unknown code of the file file_manage_control.php. Executing a manipulation can lead to privilege escalation. The identification of this vulner
CVE-2022-44109 | pdftojson 94204bb Stream::makeFilter stack-based overflow (EUVD-2022-47060)
A vulnerability was found in pdftojson 94204bb. It has been declared as critical. Affected by this vulnerability is the function Stream::makeFilter. The manipulation results in stack-based buffer overflow. This vulnerability was named CVE-2
CVE-2022-44108 | pdftojson 94204bb Object.cc Object::copy(Object*) stack-based overflow (EUVD-2022-47059)
A vulnerability was found in pdftojson 94204bb. It has been classified as critical. Affected is the function Object::copy(Object*) of the file Object.cc. The manipulation leads to stack-based buffer overflow. This vulnerability is uniquely
CVE-2022-44097 | Book Store Management System 1.0 Admin Panel hard-coded credentials (EUVD-2022-47048)
A vulnerability has been found in Book Store Management System 1.0 and classified as critical. This issue affects some unknown processing of the component Admin Panel. Performing a manipulation results in hard-coded credentials. This vulner
Active Exploitation Attempts Target WSO2 API Manager JWT Bypass With Forged Admin Tokens
A critical security flaw in WSO2 API Manager has come under active exploitation in the wild, according to findings from watchTowr. The vulnerability, tracked as CVE-2026-5430 (CVSS score: 9.8/10.0), is a case of improper verification of a c
CVE-2026-75757 | Reliance on Cookies without Validation and Integrity Checking vulnerability in ash-project ash_admin lets an attacker who controls a sibling subdomain rebind an admin's session to a different actor, tenant, or authorization mode. AshAdmin's client JavaScript read its state cookies (tenant, actor_resource, actor_primary_key, actor_action, actor_domain, actor_authorizing, actor_paused) by matching the cookie name with an unanchored regular expression (new RegE
Reliance on Cookies without Validation and Integrity Checking vulnerability in ash-project ash_admin lets an attacker who controls a sibling subdomain rebind an admin's session to a different actor, tenant, or authorization mode. AshAdmin'
CVE-2026-82605 | A vulnerability has been found in BareBones BBEdit up to 15.5.5. The affected element is an unknown function of the component Lasso Language Tokenizer. Such manipulation leads to infinite loop. The attack can be executed remotely. Upgrading to version 16.0 is sufficient to fix this issue. The affected component should be upgraded.
A vulnerability has been found in BareBones BBEdit up to 15.5.5. The affected element is an unknown function of the component Lasso Language Tokenizer. Such manipulation leads to infinite loop. The attack can be executed remotely. Upgrading
CVE-2026-82604 | A flaw has been found in BareBones BBEdit up to 15.5.5. Impacted is an unknown function of the component Java Language Module. This manipulation causes uncontrolled recursion. Remote exploitation of the attack is possible. Upgrading to version 16.0 is recommended to address this issue. You should upgrade the affected component.
A flaw has been found in BareBones BBEdit up to 15.5.5. Impacted is an unknown function of the component Java Language Module. This manipulation causes uncontrolled recursion. Remote exploitation of the attack is possible. Upgrading to vers
CVE-2026-82603 | A vulnerability was detected in SeaCMS up to 13.6. This issue affects some unknown processing of the file /member.php?action=del_pl of the component Comment Cache. The manipulation of the argument itype/vid results in path traversal. The attack may be launched remotely. The exploit is now public and may be used.
A vulnerability was detected in SeaCMS up to 13.6. This issue affects some unknown processing of the file /member.php?action=del_pl of the component Comment Cache. The manipulation of the argument itype/vid results in path traversal. The at
CVE-2026-82602 | A security vulnerability has been detected in SeaCMS up to 13.6. This vulnerability affects unknown code of the file /ass.php. The manipulation leads to authorization bypass. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used.
A security vulnerability has been detected in SeaCMS up to 13.6. This vulnerability affects unknown code of the file /ass.php. The manipulation leads to authorization bypass. The attack may be initiated remotely. The exploit has been disclo
CVE-2026-82601 | A weakness has been identified in SeaCMS up to 13.6. This affects an unknown part of the file /err.php. Executing a manipulation of the argument errtxt can lead to cross site scripting. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.
A weakness has been identified in SeaCMS up to 13.6. This affects an unknown part of the file /err.php. Executing a manipulation of the argument errtxt can lead to cross site scripting. The attack can be launched remotely. The exploit has b
CVE-2026-75760 | Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_ai discloses provider request state and credentials in a user-facing validation error. In AshAi.Changes.Vectorize, when the embedding provider call fails the change added a changeset error whose message inspected the raw error term (An error occurred while generating embeddings: #{inspect(error)}). A plain-string add_error produces an Ash.Error.Changes.InvalidChange
Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_ai discloses provider request state and credentials in a user-facing validation error. In AshAi.Changes.Vectorize, when the embedding provider ca
CVE-2026-82580 | Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_ai discloses internal error text to chat users. In AshAi.ToolLoop and AshAi.Tools, an exception raised while executing a tool was serialized verbatim with Exception.message/1 into the tool-result content. That content is appended to the conversation, emitted as a {:tool_result, ...} stream event, and sent back to the model, which typically relays it to the user. No
Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_ai discloses internal error text to chat users. In AshAi.ToolLoop and AshAi.Tools, an exception raised while executing a tool was serialized verb
CVE-2026-82579 | Loop with Unreachable Exit Condition (Infinite Loop) vulnerability in ash-project ash_ai allows an attacker who can influence a model's output to hang the tool loop and drive unbounded, repeated model requests. AshAi.ToolLoop classifies a model response of :tool_calls, then filters the calls through normalize_tool_calls/2 and unprocessed_tool_calls/2. Both can empty the list: a call missing a valid name, or one reusing a tool_call_id that already has a resul
Loop with Unreachable Exit Condition (Infinite Loop) vulnerability in ash-project ash_ai allows an attacker who can influence a model's output to hang the tool loop and drive unbounded, repeated model requests. AshAi.ToolLoop classifies a
CVE-2026-82564 | Authorization Bypass Through User-Controlled Key vulnerability in ash-project ash_ai allows a caller of an identity-configured tool to update or destroy records it never identified, including every row in the table. In AshAi.Tool.Execution, identity_filter/3 built the update/destroy filter directly from the raw tool arguments as [{key, Map.get(arguments, to_string(key))}] and passed it to Ash.Query.do_filter/2. A map value is parsed as a predicate expression
Authorization Bypass Through User-Controlled Key vulnerability in ash-project ash_ai allows a caller of an identity-configured tool to update or destroy records it never identified, including every row in the table. In AshAi.Tool.Execution