CVE-2026-82877: Schwachstellen-Eintrag (NVD)
ILIAS before versions 9.22, 10.10, and 11.3 contains an arbitrary file read vulnerability in the SOAP addFile method that allows authenticated users to read server files by supplying crafted XML with COPY-mode imports. Attackers can construct absolute file paths through an unsandboxed import directory and retrieve sensitive files including configuration files containing database credentials and setup passwords.
Zero-Day & Vulnerability Intelligence Hub
Echtzeit-Tracking mit EPSS Exploit-Wahrscheinlichkeiten, Angriffsvektor-Decodern und KI-Patch-Anleitungen.
📊 Historien-Charts — Criticals-Trend · Vendors · EPSS-Verteilung
| Tier | 2026-08-29 | 2026-09-06 |
|---|---|---|
| ≥90 % | 4 | 0 |
| ≥50 % | 4 | 0 |
| ≥10 % | 3 | 0 |
| <10 % | 304 | 300 |
CVE-2026-84745 | The Events Calendar Plugin up to 6.17.3.0 on WordPress information disclosure
A vulnerability, which was classified as problematic, has been found in The Events Calendar Plugin up to 6.17.3.0 on WordPress. This affects an unknown function. This manipulation causes information disclosure. This vulnerability appears as
CVE-2026-84225 | Kirki Plugin up to 6.2.x on WordPress authorization
A vulnerability classified as problematic was found in Kirki Plugin up to 6.2.x on WordPress. The impacted element is an unknown function. The manipulation results in authorization bypass. This vulnerability is reported as CVE-2026-84225. T
CVE-2026-81348 | My Private Site Plugin up to 4.2.2 on WordPress information disclosure
A vulnerability labeled as problematic has been found in My Private Site Plugin up to 4.2.2 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation results in information disclosure. This vulnerability is
CVE-2026-82846 | Masteriyo LMS Plugin up to 3.3.x on WordPress Course Settings cross site scripting
A vulnerability was found in Masteriyo LMS Plugin up to 3.3.x on WordPress. It has been declared as problematic. Affected is an unknown function of the component Course Settings. Executing a manipulation can lead to cross site scripting. Th
CVE-2026-81404 | IPGP Visitors Origin Plugin up to 1.5 on WordPress cross site scripting
A vulnerability was found in IPGP Visitors Origin Plugin up to 1.5 on WordPress. It has been classified as problematic. This impacts an unknown function. Performing a manipulation results in cross site scripting. This vulnerability was name
CVE-2026-84221 | Kirki Plugin up to 6.2.x on WordPress sql injection
A vulnerability was found in Kirki Plugin up to 6.2.x on WordPress and classified as critical. This affects an unknown function. Such manipulation leads to sql injection. This vulnerability is uniquely identified as CVE-2026-84221. The atta
CVE-2026-84021 | Bold Page Builder Plugin up to 5.9.7 on WordPress cross site scripting
A vulnerability, which was classified as problematic, was found in Bold Page Builder Plugin up to 5.9.7 on WordPress. The affected element is an unknown function. The manipulation results in cross site scripting. This vulnerability is known
CVE-2026-84022 | Bold Page Builder Plugin up to 5.9.7 on WordPress Shortcode cross site scripting
A vulnerability has been found in Bold Page Builder Plugin up to 5.9.7 on WordPress and classified as problematic. The impacted element is an unknown function of the component Shortcode Handler. This manipulation causes cross site scripting
CVE-2026-83543 | Greenshift Plugin up to 13.1.x on WordPress server-side request forgery
A vulnerability classified as critical was found in Greenshift Plugin up to 13.1.x on WordPress. This issue affects some unknown processing. Executing a manipulation can lead to server-side request forgery. This vulnerability appears as CVE
CVE-2026-83544 | Greenshift Plugin up to 13.1.x on WordPress cross site scripting
A vulnerability, which was classified as problematic, has been found in Greenshift Plugin up to 13.1.x on WordPress. Impacted is an unknown function. The manipulation leads to cross site scripting. This vulnerability is traded as CVE-2026-8
CVE-2026-81424 | Accept Stripe Payments Plugin up to 2.1.3 on WordPress authorization
A vulnerability described as problematic has been identified in Accept Stripe Payments Plugin up to 2.1.3 on WordPress. This affects an unknown part. Such manipulation leads to authorization bypass. This vulnerability is documented as CVE-2
CVE-2026-82304 | Music Store Plugin up to 1.4.4 on WordPress sql injection
A vulnerability classified as critical has been found in Music Store Plugin up to 1.4.4 on WordPress. This vulnerability affects unknown code. Performing a manipulation results in sql injection. This vulnerability is reported as CVE-2026-82
CVE-2026-81423 | Accept Stripe Payments Plugin up to 2.1.3 on WordPress redirect
A vulnerability marked as problematic has been reported in Accept Stripe Payments Plugin up to 2.1.3 on WordPress. Affected by this issue is some unknown functionality. This manipulation causes open redirect. This vulnerability is registere
CVE-2026-85401 | Dolibarr up to 21.0.4/22.0.5/23.0.3 Legacy File Manager config.inc.php access control (Issue 38963)
A vulnerability was found in Dolibarr up to 21.0.4/22.0.5/23.0.3 and classified as critical. Affected by this issue is some unknown functionality of the file htdocs/core/filemanagerdol/connectors/php/config.inc.php of the component Legacy F
CVE-2026-85399 | code-projects Hospital Information System 1.0 PrespController.php getSinglePresp ID sql injection
A vulnerability has been found in code-projects Hospital Information System 1.0 and classified as critical. Affected by this vulnerability is the function getSinglePresp of the file includes/presp/PrespController.php. Performing a manipulat
CVE-2026-85398 | code-projects Hospital Information System 1.0 viewReq.php viewReq ID sql injection
A vulnerability, which was classified as critical, was found in code-projects Hospital Information System 1.0. Affected is the function viewReq of the file viewReq.php. Such manipulation of the argument ID leads to sql injection. This vulne
CVE-2026-85381 | light0011 cms Chapter Controller ChapterController.class.php content authorization (EUVD-2026-70854)
A vulnerability labeled as problematic has been found in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930. This issue affects some unknown processing of the file App/Home/Controller/ChapterCont
CVE-2026-85380 | light0011 cms UEditor controller.php catchimage source[] server-side request forgery (EUVD-2026-70853)
A vulnerability identified as critical has been detected in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930. This vulnerability affects the function catchimage of the file Public/ueditor/php/c
CVE-2026-85222 | D-Link DNS-340L 1.01B04 Add-On Center addon_center.cgi f_name/f_url/f_flag/f_login_user os command injection (EUVD-2026-70748)
A vulnerability categorized as very critical has been discovered in D-Link DNS-340L 1.01B04. Affected by this vulnerability is an unknown functionality of the file /cgi-bin/addon_center.cgi of the component Add-On Center. Such manipulation
CVE-2026-85378 | light0011 cms Chapter Controller ChapterController.class.php _initialize authorization (EUVD-2026-70799)
A vulnerability was found in light0011 cms c774dce31c6df0055568a8d5c53d964d99be199d/f72cf46f601efb2a0618c3814cc2f61380b38930. It has been rated as critical. Affected by this issue is the function AuthController::_initialize of the file App/
CVE-2026-86279 | SourceCodester Syllabus-Aligned Learning Management & Examination System Login auth_process.php session fixiation (EUVD-2026-72273)
A vulnerability was found in SourceCodester Syllabus-Aligned Learning Management &amp; Examination System 1.0. It has been classified as critical. The impacted element is an unknown function of the file auth_process.php of the component
CVE-2026-86280 | SourceCodester Syllabus-Aligned Learning Management & Examination System cict_portal.sql cleartext storage (EUVD-2026-72274)
A vulnerability was found in SourceCodester Syllabus-Aligned Learning Management &amp; Examination System 1.0. It has been declared as problematic. This affects an unknown function of the file cict_portal.sql. Such manipulation leads to
CVE-2026-81738 | OpenVPN up to 2.7.6 tap-windows6 DOMAIN-SEARCH out-of-bounds write (EUVD-2026-72278)
A vulnerability classified as very critical was found in OpenVPN up to 2.7.6. This impacts an unknown function of the component tap-windows6. Such manipulation of the argument DOMAIN-SEARCH leads to out-of-bounds write. This vulnerability i
CVE-2026-86281 | SourceCodester Syllabus-Aligned Learning Management & Examination System cross-site request forgery (EUVD-2026-72277)
A vulnerability was found in SourceCodester Syllabus-Aligned Learning Management &amp; Examination System 1.0. It has been rated as problematic. This impacts an unknown function. Performing a manipulation results in cross-site request f
CVE-2026-78254 | Apache Software Foundation Apache Ant ftp/scp path traversal (EUVD-2026-72281)
A vulnerability was found in Apache Software Foundation Apache Ant. It has been rated as critical. The impacted element is an unknown function of the component ftp/scp. Performing a manipulation results in path traversal. This vulnerability
CVE-2026-82312 | OpenVPN up to 2.6.22/2.7.6 IPC denial of service (EUVD-2026-72280)
A vulnerability, which was classified as critical, has been found in OpenVPN up to 2.6.22/2.7.6. Affected is an unknown function of the component IPC. Performing a manipulation results in denial of service. This vulnerability is cataloged a
CVE-2026-81830 | OpenVPN up to 2.6.22 Interactive Service path traversal (EUVD-2026-72279)
A vulnerability classified as very critical has been found in OpenVPN up to 2.6.22. This affects an unknown function of the component Interactive Service. This manipulation causes path traversal. This vulnerability is tracked as CVE-2026-81
CVE-2026-86282 | jaychouchannel Tourism-Management-System up to 8122bf020d91199eddfff3ee02d1632a70a9a132 CommonDao CommonController.java table/column/xColumn/yColumn sql injection (EUVD-2026-72282)
A vulnerability categorized as critical has been discovered in jaychouchannel Tourism-Management-System up to 8122bf020d91199eddfff3ee02d1632a70a9a132. Affected is an unknown function of the file travel/src/main/java/com/controller/CommonCo
CVE-2026-84226 | OpenVPN up to 2.6.22/2.7.6 Network Configuration privileges management (EUVD-2026-72283)
A vulnerability, which was classified as very critical, was found in OpenVPN up to 2.6.22/2.7.6. Affected by this vulnerability is an unknown functionality of the component Network Configuration. Executing a manipulation can lead to imprope
Hackers Exploit PaperCut NG/MF Flaws to Steal Credentials and Deploy Meterpreter
Threat actors are actively exploiting two critical vulnerabilities in PaperCut NG/MF, identified as CVE-2026-81578 and CVE-2026-82078. These exploits allow attackers to take control of print management servers, steal credentials, and deploy
Magento and Adobe Commerce StyleSmuggler 0-Day RCE Actively Exploited in Attacks
Security researchers have discovered an actively exploited, unauthenticated remote code execution vulnerability affecting installations of Magento Open Source and Adobe Commerce. This vulnerability, known as StyleSmuggler, allows attackers
Critical ASUS Control Center CVE-2026-75754 Flaw Allows Unauthenticated Root Access
ASUS has issued a security bulletin regarding a critical vulnerability in ASUS Control Center Enterprise (ACC), identified as CVE-2026-75754. This flaw affects ACC version 4.0.0.2 and earlier, allowing for unauthenticated root access. Criti
DEF CON SG1 - CSIT Village - Ernest Ang - From Chrome Renderer, To Mouse To System
YouTube VideoYou click on a link. A download prompt appears. Your mouse suddenly seems to take on a life of its own and clicks the pop-up. Before you know it, your Windows machine belongs to me. This session breaks down an amusing and far-
DEF CON SG1 - CSIT Village - Ernest Ang - From Chrome Renderer, To Mouse To System
YouTube VideoYou click on a link. A download prompt appears. Your mouse suddenly seems to take on a life of its own and clicks the pop-up. Before you know it, your Windows machine belongs to me. This session breaks down an amusing and far-
DEF CON SG1 - CSIT Village - Chua Meng Han - From CTF To CVE 202552691 Lessons Hidden In Plain Sight
YouTube VideoCritical vulnerabilities like CVE-2025-52691 remind us that “low-hanging fruit” still exists today. This session deconstructs how simple, overlooked design flaws can be weaponised for catastrophic impact. We will also share pra
DEF CON SG1 - CSIT Village - Jun Rong And Javier Koh - Cve 2025 52692 Rogue Request Roots Router
YouTube VideoThis talk breaks down the discovery of CVE-2025-52692, a zero-day vulnerability in the widely used Linksys E9450 SG router. We will show how a simple string comparison flaw allowed a complete authentication bypass, eventually
DEF CON SG1 - CSIT Village - Chua Meng Han - From CTF To CVE 202552691 Lessons Hidden In Plain Sight
YouTube VideoCritical vulnerabilities like CVE-2025-52691 remind us that “low-hanging fruit” still exists today. This session deconstructs how simple, overlooked design flaws can be weaponised for catastrophic impact. We will also share pra
DEF CON SG1 - CSIT Village - Jun Rong And Javier Koh - Cve 2025 52692 Rogue Request Roots Router
YouTube VideoThis talk breaks down the discovery of CVE-2025-52692, a zero-day vulnerability in the widely used Linksys E9450 SG router. We will show how a simple string comparison flaw allowed a complete authentication bypass, eventually
0patch liefert drei Jahre Support für Microsoft Office 2021 - BornCity
Windows 7/Server 2008 R2: 0Patch-Support bis Januar 2027 · Windows 10 ... 0patch Fix für Windows Server Telephony Schwachstelle CVE-2026-20931 Weiterlesen
ProFTPD mod_sql post-authentication SQLi RCE
Topic: ProFTPD mod_sql post-authentication SQLi RCE Risk: Medium Text:#!/usr/bin/env python3 """ CVE-2026-42167 — ProFTPD mod_sql post-authentication SQL injection -&gt; RCE postauth_stor_r... Weiterlesen
PaperCut Flaws Exploited in Attacks on U.S. and European Schools
Attackers are exploiting two new PaperCut flaws to steal credentials and gain privileged access in education-sector attacks across the U.S. and Europe. Attackers are exploiting two recelty disclosed PaperCut flaws, CVE-2026-81578 and CVE-20
Elementor Pro WordPress Plugin Vulnerability Exploited to Hack Sites
Tracked as CVE-2026-32475 (CVSS score of 9.8), the bug described as an arbitrary file upload issue in the function that handles form submissions. The post Elementor Pro WordPress Plugin Vulnerability Exploited to Hack Sites appeared first o
U.S. CISA adds Google Chromium V8 flaw to its Known Exploited Vulnerabilities catalog
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Google Chromium V8 flaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a Google Chromium V8 flaw, trac
HPE Patches Critical RCE Vulnerabilities in AOS-CX
Nearly two dozen issues, tracked collectively as CVE-2026-73749 (CVSS score of 9.8), were addressed with the updates. The post HPE Patches Critical RCE Vulnerabilities in AOS-CX appeared first on SecurityWeek. Weiterlesen
Sangoma Switchvox Vulnerabilities Exploited in the Wild
Tracked as CVE-2026-9586, the unauthenticated SQL injection flaw can be exploited remotely for arbitrary code execution. The post Sangoma Switchvox Vulnerabilities Exploited in the Wild appeared first on SecurityWeek. Weiterlesen
12-Year-Old PostgreSQL Vulnerability Enables Database, Server Takeover
Dubbed PostGREShell, CVE-2026-6471 turns low-level replication access into code execution, permanent superuser privileges and a persistent database backdoor. The post 12-Year-Old PostgreSQL Vulnerability Enables Database, Server Takeover ap
Google Patches 6th Chrome Zero-Day of 2026
Google’s Chrome 152 security update resolves 12 vulnerabilities, including a high-severity type confusion flaw in the V8 engine. The post Google Patches 6th Chrome Zero-Day of 2026 appeared first on SecurityWeek. Weiterlesen
Attackers exploit zero-days in consistently besieged SonicWall product
SonicWall customers are grappling with yet another pair of actively exploited zero-day vulnerabilities in SonicWall SMA 1000 appliances, a product that’s been besieged with recurring defects and attacks over the past nine months. The vendo
Serious vulnerability threatens tens of thousands of Exchange servers
A serious vulnerability was recently discovered in Exchange Server 2016, Exchange Server 2016, and Exchange Server Subscription Edition (SE). The vulnerability is designated CVE-2026-62911 and can be exploited by hackers to gain full access
Hackers Just Poisoned the Rust Supply Chain | Threat Wire
YouTube Video⬇️ OPEN FOR LINKS TO ARTICLES TO LEARN MORE ⬇️ @endingwithali → Twitch: https://twitch.tv/endingwithali Twitter: https://twitter.com/endingwithali YouTube: https://youtube.com/@endingwithali Everywhere else: https://links.ali
Hackers Just Poisoned the Rust Supply Chain | Threat Wire
YouTube Video⬇️ OPEN FOR LINKS TO ARTICLES TO LEARN MORE ⬇️ @endingwithali → Twitch: https://twitch.tv/endingwithali Twitter: https://twitter.com/endingwithali YouTube: https://youtube.com/@endingwithali Everywhere else: https://links.ali
CVE-2026-75757 | Reliance on Cookies without Validation and Integrity Checking vulnerability in ash-project ash_admin lets an attacker who controls a sibling subdomain rebind an admin's session to a different actor, tenant, or authorization mode. AshAdmin's client JavaScript read its state cookies (tenant, actor_resource, actor_primary_key, actor_action, actor_domain, actor_authorizing, actor_paused) by matching the cookie name with an unanchored regular expression (new RegE
Reliance on Cookies without Validation and Integrity Checking vulnerability in ash-project ash_admin lets an attacker who controls a sibling subdomain rebind an admin's session to a different actor, tenant, or authorization mode. AshAdmin'
CVE-2026-82605 | A vulnerability has been found in BareBones BBEdit up to 15.5.5. The affected element is an unknown function of the component Lasso Language Tokenizer. Such manipulation leads to infinite loop. The attack can be executed remotely. Upgrading to version 16.0 is sufficient to fix this issue. The affected component should be upgraded.
A vulnerability has been found in BareBones BBEdit up to 15.5.5. The affected element is an unknown function of the component Lasso Language Tokenizer. Such manipulation leads to infinite loop. The attack can be executed remotely. Upgrading
CVE-2026-82604 | A flaw has been found in BareBones BBEdit up to 15.5.5. Impacted is an unknown function of the component Java Language Module. This manipulation causes uncontrolled recursion. Remote exploitation of the attack is possible. Upgrading to version 16.0 is recommended to address this issue. You should upgrade the affected component.
A flaw has been found in BareBones BBEdit up to 15.5.5. Impacted is an unknown function of the component Java Language Module. This manipulation causes uncontrolled recursion. Remote exploitation of the attack is possible. Upgrading to vers
CVE-2026-82603 | A vulnerability was detected in SeaCMS up to 13.6. This issue affects some unknown processing of the file /member.php?action=del_pl of the component Comment Cache. The manipulation of the argument itype/vid results in path traversal. The attack may be launched remotely. The exploit is now public and may be used.
A vulnerability was detected in SeaCMS up to 13.6. This issue affects some unknown processing of the file /member.php?action=del_pl of the component Comment Cache. The manipulation of the argument itype/vid results in path traversal. The at
CVE-2026-82602 | A security vulnerability has been detected in SeaCMS up to 13.6. This vulnerability affects unknown code of the file /ass.php. The manipulation leads to authorization bypass. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used.
A security vulnerability has been detected in SeaCMS up to 13.6. This vulnerability affects unknown code of the file /ass.php. The manipulation leads to authorization bypass. The attack may be initiated remotely. The exploit has been disclo
CVE-2026-82601 | A weakness has been identified in SeaCMS up to 13.6. This affects an unknown part of the file /err.php. Executing a manipulation of the argument errtxt can lead to cross site scripting. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.
A weakness has been identified in SeaCMS up to 13.6. This affects an unknown part of the file /err.php. Executing a manipulation of the argument errtxt can lead to cross site scripting. The attack can be launched remotely. The exploit has b
CVE-2026-75760 | Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_ai discloses provider request state and credentials in a user-facing validation error. In AshAi.Changes.Vectorize, when the embedding provider call fails the change added a changeset error whose message inspected the raw error term (An error occurred while generating embeddings: #{inspect(error)}). A plain-string add_error produces an Ash.Error.Changes.InvalidChange
Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_ai discloses provider request state and credentials in a user-facing validation error. In AshAi.Changes.Vectorize, when the embedding provider ca
CVE-2026-82580 | Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_ai discloses internal error text to chat users. In AshAi.ToolLoop and AshAi.Tools, an exception raised while executing a tool was serialized verbatim with Exception.message/1 into the tool-result content. That content is appended to the conversation, emitted as a {:tool_result, ...} stream event, and sent back to the model, which typically relays it to the user. No
Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_ai discloses internal error text to chat users. In AshAi.ToolLoop and AshAi.Tools, an exception raised while executing a tool was serialized verb
CVE-2026-82579 | Loop with Unreachable Exit Condition (Infinite Loop) vulnerability in ash-project ash_ai allows an attacker who can influence a model's output to hang the tool loop and drive unbounded, repeated model requests. AshAi.ToolLoop classifies a model response of :tool_calls, then filters the calls through normalize_tool_calls/2 and unprocessed_tool_calls/2. Both can empty the list: a call missing a valid name, or one reusing a tool_call_id that already has a resul
Loop with Unreachable Exit Condition (Infinite Loop) vulnerability in ash-project ash_ai allows an attacker who can influence a model's output to hang the tool loop and drive unbounded, repeated model requests. AshAi.ToolLoop classifies a