CVE-2026-92008: Schwachstellen-Eintrag (NVD)
Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 140.16.
- 🔗 bugzilla.mozilla.org/show_bug.cgi
- 🔗 www.mozilla.org/security/advisories/mfsa2026-90/
- 🔗 www.mozilla.org/security/advisories/mfsa2026-91/
- 🔗 www.mozilla.org/security/advisories/mfsa2026-92/
- 🔗 www.mozilla.org/security/advisories/mfsa2026-93/
- 🔗 www.mozilla.org/security/advisories/mfsa2026-94/
- 🔗 www.mozilla.org/security/advisories/mfsa2026-95/
Zero-Day & Vulnerability Intelligence Hub
Echtzeit-Tracking mit EPSS Exploit-Wahrscheinlichkeiten, Angriffsvektor-Decodern und KI-Patch-Anleitungen.
📊 Historien-Charts — Criticals-Trend · Vendors · EPSS-Verteilung
| Tier | 2026-08-29 | 2026-09-15 |
|---|---|---|
| ≥90 % | 4 | 0 |
| ≥50 % | 4 | 0 |
| ≥10 % | 3 | 0 |
| <10 % | 304 | 300 |
Acronis Backup Plugin Vulnerability Exploited in the Wild to Gain Elevated Linux Privileges
Acronis has released an urgent security update for a high-severity local privilege escalation vulnerability affecting its Backup plugin for cPanel &amp; WHM on Linux. The company confirmed that attackers have already exploited this flaw
Zero-Day Flaw in TP-Link Cameras Enables Eavesdropping
OPSWAT researchers find two zero-days in TP-Link cameras Weiterlesen
Acronis Patches Exploited Vulnerability in cPanel Backup Plugin
CVE-2026-87886 is a high-severity insecure file permissions flaw that can lead to local privilege escalation. The post Acronis Patches Exploited Vulnerability in cPanel Backup Plugin appeared first on SecurityWeek. Weiterlesen
Android 0-day Vulnerability on Google Pixel Devices Actively Exploited in Attacks
Google has confirmed that a high-severity Android zero-day flaw affecting its Pixel smartphones is being actively exploited in the wild, and it has shipped emergency patches as part of the September 2026 Pixel Update Bulletin. Tracked as CV
Acronis backup plugin flaw exploited in targeted attacks (CVE-2026-87886)
A Linux privilege escalation vulnerability (CVE-2026-87886) affecting Acronis’ backup extensions for cPanel, WebHost Manager (WHM), and Plesk, is being leveraged by attackers, the backup and recovery company warns. “Exploitation of this vul
Apache Superset SQL Injection Flaw Gets Public PoC Exploit
A public proof-of-concept exploit has been released for CVE-2026-23980, a SQL injection vulnerability affecting Apache Superset installations running versions earlier than 6.0.0. The Apache Superset project disclosed this issue in February.
Google patches Pixel modem zero-day exploited in targeted attacks
Google has fixed a high-severity Pixel modem vulnerability that may already have been exploited in limited, targeted attacks. Tracked as CVE-2026-58704, the flaw was fixed as part of the September 2026 Pixel security update, which brings su
CVE-2026-73454 | Arista EOS up to 4.36.0.1F gRPC Network Security Interface privileges management (EUVD-2026-80253)
A vulnerability categorized as critical has been discovered in Arista EOS up to 4.36.0.1F. This impacts an unknown function of the component gRPC Network Security Interface. The manipulation results in improper privilege management. This vu
CVE-2026-73439 | Arista EOS up to 4.33.8M/4.34.6M/4.35.5M/4.36.0.1F gNSI Pathz Policy Enforcement privileges management (EUVD-2026-80252)
A vulnerability was found in Arista EOS up to 4.33.8M/4.34.6M/4.35.5M/4.36.0.1F. It has been declared as very critical. The impacted element is an unknown function of the component gNSI Pathz Policy Enforcement. Executing a manipulation can
CVE-2026-89186 | ZenHive mpp up to 0.16.1 lib/mpp/plug.ex MPP.Plug.verify_credential information disclosure (EUVD-2026-80254)
A vulnerability was found in ZenHive mpp up to 0.16.1. It has been rated as problematic. This affects the function MPP.Plug.verify_credential of the file lib/mpp/plug.ex. The manipulation leads to information disclosure. This vulnerability
CVE-2026-89774 | Linux Kernel up to 6.18.39 Bluetooth sco_conn_ready sk use after free (EUVD-2026-80255)
A vulnerability was found in Linux Kernel up to 5.15.211/6.1.177/6.6.144/6.12.96/6.18.39 and classified as very critical. Impacted is the function sco_conn_ready of the component Bluetooth. Such manipulation of the argument sk leads to use
CVE-2026-88255 | ZenHive mpp up to 0.16.1 Duplicate Submission Gate lib/mpp/replay.ex reserve_hash_atomic input validation (EUVD-2026-80256)
A vulnerability was found in ZenHive mpp up to 0.16.1. It has been classified as problematic. The affected element is the function reserve_hash_atomic of the file lib/mpp/replay.ex of the component Duplicate Submission Gate. Performing a ma
Parallels Desktop Vulnerability Lets Non-Admin Mac Users Execute Code as Root
A critical local privilege escalation vulnerability in Parallels Desktop for Mac could allow a non-administrator user or unprivileged process to execute attacker-controlled code with root privileges. Tracked as CVE-2026-90894 and called “Pa
Parallels Desktop Flaw Lets Unprivileged Mac Users Gain Root Access
A critical local privilege-escalation vulnerability in Parallels Desktop for Mac could allow an unprivileged local user to execute attacker-controlled code with root privileges, placing developer workstations and shared macOS systems at ris
Acronis Backup Plugin Vulnerability in cPanel and Plesk Exploited in the Wild
Acronis has released security updates for its Backup plugin for cPanel &amp; WHM and Backup extension for Plesk after identifying limited, targeted exploitation of a high-severity local privilege-escalation vulnerability in the wild. Tr
PoC Exploit Released for Apache Superset SQL Injection Vulnerability
A public proof-of-concept (PoC) exploit has been released for CVE-2026-23980, a SQL injection vulnerability affecting Apache Superset versions prior to 6.0.0. The vulnerability could enable authenticated users with read-level permissions to
Enterprises Warned of Attacks Exploiting WSO2 Vulnerability
The vulnerability, tracked as CVE-2026-5430, can be exploited to gain access to valuable enterprise data. The post Enterprises Warned of Attacks Exploiting WSO2 Vulnerability appeared first on SecurityWeek. Weiterlesen
CVE-2024-44981 | Linux Kernel up to 6.10.6 workqueue shift_and_mask denial of service (90a6a844b2d9/38f7e14519d3 / WID-SEC-2024-2057)
A vulnerability classified as problematic has been found in Linux Kernel up to 6.10.6. The impacted element is the function shift_and_mask of the component workqueue. The manipulation leads to denial of service. This vulnerability is traded
CVE-2024-44980 | Linux Kernel up to 6.10.6 DRM memory leak (f7ecdd9853dd/f4b2a0ae1a31 / Nessus ID 212724)
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.10.6. This impacts an unknown function of the component DRM. This manipulation causes memory leak. This vulnerability is handled as CVE-2024-44980. Th
CVE-2024-44979 | Linux Kernel up to 6.10.6 DRM xe_gt_pagefault memory leak (b09ef3b762a7/a6f78359ac75 / Nessus ID 212724)
A vulnerability described as problematic has been identified in Linux Kernel up to 6.10.6. The affected element is the function xe_gt_pagefault of the component DRM. Executing a manipulation can lead to memory leak. This vulnerability appea
CVE-2024-44977 | Linux Kernel up to 6.1.106/6.6.47/6.10.6 AMD GPU out-of-bounds write (Nessus ID 208099 / WID-SEC-2024-2057)
A vulnerability marked as critical has been reported in Linux Kernel up to 6.1.106/6.6.47/6.10.6. Impacted is an unknown function of the component AMD GPU. Performing a manipulation results in out-of-bounds write. This vulnerability is repo
CVE-2024-44978 | Linux Kernel up to 6.10.6 DRM xe_exec_queue_put use after free (98aa0330f200/9e7f30563677 / Nessus ID 212724)
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.10.6. This affects the function xe_exec_queue_put of the component DRM. The manipulation results in use after free. This vulnerability is cataloged as CVE-2
CVE-2024-44976 | Linux Kernel up to 6.10.6 DMA Table drivers/ata/pata_macio.c denial of service (709e4c8f78e1/822c8020aebc / WID-SEC-2024-2057)
A vulnerability labeled as critical has been found in Linux Kernel up to 6.10.6. This issue affects some unknown processing of the file drivers/ata/pata_macio.c of the component DMA Table Handler. Such manipulation leads to denial of servic
CVE-2024-44973 | Linux Kernel up to 6.10.4 mm/slub.c do_slab_free denial of service (b35cd7f1e969/a371d558e6f3 / Nessus ID 212724)
A vulnerability was found in Linux Kernel up to 6.10.4. It has been rated as problematic. This impacts the function do_slab_free of the file mm/slub.c. Performing a manipulation results in denial of service. This vulnerability is cataloged
CVE-2024-44972 | Linux Kernel up to 6.6.45/6.10.4 btrfs extent_write_locked_range buffer overflow (ba4dedb71356/d3b403209f76/97713b1a2ced / Nessus ID 212724)
This issue looks like a false-positive. Please review the listed sources and think about not using this entry. Weiterlesen
Public PoC Released for Apache Superset SQL Injection Vulnerability
A public proof-of-concept exploit has been released for CVE-2026-23980, a SQL injection vulnerability affecting Apache Superset versions before 6.0.0. The flaw could allow authenticated users with read-level access to trigger error-based SQ
Acronis Plugin Vulnerability in cPanel and Plesk Exploited in the Wild
Acronis has released security updates for its Backup plugin for cPanel &amp; WHM and Backup extension for Plesk after detecting limited, targeted exploitation of a high-severity local privilege-escalation vulnerability in the wild. Trac
September-Updates schließen 180 Sicherheitslücken in Android – Pixel Update stopft 0-Day-Lücke
Mit dem Android Security Bulletin für September 2026 dokumentiert Google die Schwachstellen des Mobilbetriebssystems, die dessen Entwickler in den offenliegenden Quelltexten beseitigt haben. Üblicherweise geschieht dies am ersten Montag des
September-Updates schließen 180 Sicherheitslücken in Android – Pixel Update stopft 0-Day-Lücke
Mit dem Android Security Bulletin für September 2026 dokumentiert Google die Schwachstellen des Mobilbetriebssystems, die dessen Entwickler in den offenliegenden Quelltexten beseitigt haben. Üblicherweise geschieht dies am ersten Montag des
CVE-2026-28616 | Google Android Setup Wizard privileges management
A vulnerability was found in Google Android. It has been rated as very critical. Affected by this issue is some unknown functionality of the component Setup Wizard. This manipulation causes improper privilege management. This vulnerability
CVE-2026-28612 | Google Android 16/16-qpr2/17 ActivityStarter ActivityStarter.java resolveActivity redirect
A vulnerability identified as problematic has been detected in Google Android 16/16-qpr2/17. This vulnerability affects the function resolveActivity of the file ActivityStarter.java of the component ActivityStarter. Performing a manipulatio
CVE-2026-28609 | Google Android 14/15/16/16-qpr2 MatroskaExtractor.cpp out-of-bounds write
A vulnerability classified as very critical has been found in Google Android 14/15/16/16-qpr2. Affected by this issue is some unknown functionality of the file MatroskaExtractor.cpp. Performing a manipulation results in out-of-bounds write.
CVE-2026-28604 | Google Android up to 17 use after free
A vulnerability classified as very critical was found in Google Android 14/15/16/16-qpr2/17. This affects an unknown part. Executing a manipulation can lead to use after free. The identification of this vulnerability is CVE-2026-28604. The
CVE-2026-28620 | Google Android 16/16-qpr2/17 privileges management
A vulnerability described as very critical has been identified in Google Android 16/16-qpr2/17. The affected element is an unknown function. The manipulation results in improper privilege management. This vulnerability is known as CVE-2026-
CVE-2026-28614 | Google Android up to 17 SlicePermissionActivity SlicePermissionActivity.java onCreate privileges management
A vulnerability marked as problematic has been reported in Google Android 14/15/16/16-qpr2/17. Impacted is the function onCreate of the file SlicePermissionActivity.java of the component SlicePermissionActivity. The manipulation leads to im
CVE-2026-28613 | Google Android up to 17 ChannelImpl ChannelImpl.java initAppLinkTypeAndIntent input validation
A vulnerability labeled as critical has been found in Google Android 14/15/16/16-qpr2/17. This issue affects the function initAppLinkTypeAndIntent of the file ChannelImpl.java of the component ChannelImpl. Executing a manipulation can lead
CVE-2026-28617 | Google Android 15/16/16-qpr2/17 WifiNetworkSuggestionsManager WifiNetworkSuggestionsManager.java resource consumption
A vulnerability categorized as problematic has been discovered in Google Android 15/16/16-qpr2/17. This affects an unknown part of the file WifiNetworkSuggestionsManager.java of the component WifiNetworkSuggestionsManager. Such manipulation
CVE-2026-28618 | Google Android 16/16-QPR2/17 oapv.c dec_frm_prepare heap-based overflow
A vulnerability was found in Google Android 16/16-QPR2/17. It has been classified as very critical. Affected is the function dec_frm_prepare of the file oapv.c. The manipulation leads to heap-based buffer overflow. This vulnerability is lis
CVE-2026-28611 | Google Android 15/16 NFC Payment Session NfcService.java privileges management
A vulnerability has been found in Google Android 15/16 and classified as very critical. This affects an unknown function of the file NfcService.java of the component NFC Payment Session. Performing a manipulation results in improper privile
CVE-2026-28607 | Google Android 15/16/16-qpr2/17 privileges management
A vulnerability, which was classified as very critical, was found in Google Android 15/16/16-qpr2/17. The impacted element is an unknown function. Such manipulation leads to improper privilege management. This vulnerability is referenced as
CVE-2026-28603 | Google Android up to 17 AppRestrictionsFragment.java assertSafeToStartCustomActivity privileges management
A vulnerability, which was classified as problematic, has been found in Google Android 14/15/16/16-qpr2/17. The affected element is the function assertSafeToStartCustomActivity of the file AppRestrictionsFragment.java. This manipulation cau
CVE-2022-44137 | SourceCodester Sanitization Management System 1.0 sql injection (EUVD-2022-47087)
A vulnerability was found in SourceCodester Sanitization Management System 1.0. It has been rated as critical. Impacted is an unknown function. Performing a manipulation results in sql injection. This vulnerability is known as CVE-2022-4413
CVE-2022-44120 | dedecmdv6 6.1.9 sys_sql_query.php sql injection (EUVD-2022-47071)
A vulnerability classified as critical has been found in dedecmdv6 6.1.9. The affected element is an unknown function of the file sys_sql_query.php. This manipulation causes sql injection. This vulnerability is tracked as CVE-2022-44120. Th
CVE-2022-44118 | dedecmdv6 6.1.9 file_manage_control.php privilege escalation (EUVD-2022-47069)
A vulnerability labeled as critical has been found in dedecmdv6 6.1.9. This vulnerability affects unknown code of the file file_manage_control.php. Executing a manipulation can lead to privilege escalation. The identification of this vulner
CVE-2022-44109 | pdftojson 94204bb Stream::makeFilter stack-based overflow (EUVD-2022-47060)
A vulnerability was found in pdftojson 94204bb. It has been declared as critical. Affected by this vulnerability is the function Stream::makeFilter. The manipulation results in stack-based buffer overflow. This vulnerability was named CVE-2
CVE-2022-44108 | pdftojson 94204bb Object.cc Object::copy(Object*) stack-based overflow (EUVD-2022-47059)
A vulnerability was found in pdftojson 94204bb. It has been classified as critical. Affected is the function Object::copy(Object*) of the file Object.cc. The manipulation leads to stack-based buffer overflow. This vulnerability is uniquely
CVE-2022-44097 | Book Store Management System 1.0 Admin Panel hard-coded credentials (EUVD-2022-47048)
A vulnerability has been found in Book Store Management System 1.0 and classified as critical. This issue affects some unknown processing of the component Admin Panel. Performing a manipulation results in hard-coded credentials. This vulner
CVE-2026-75757 | Reliance on Cookies without Validation and Integrity Checking vulnerability in ash-project ash_admin lets an attacker who controls a sibling subdomain rebind an admin's session to a different actor, tenant, or authorization mode. AshAdmin's client JavaScript read its state cookies (tenant, actor_resource, actor_primary_key, actor_action, actor_domain, actor_authorizing, actor_paused) by matching the cookie name with an unanchored regular expression (new RegE
Reliance on Cookies without Validation and Integrity Checking vulnerability in ash-project ash_admin lets an attacker who controls a sibling subdomain rebind an admin's session to a different actor, tenant, or authorization mode. AshAdmin'
CVE-2026-82605 | A vulnerability has been found in BareBones BBEdit up to 15.5.5. The affected element is an unknown function of the component Lasso Language Tokenizer. Such manipulation leads to infinite loop. The attack can be executed remotely. Upgrading to version 16.0 is sufficient to fix this issue. The affected component should be upgraded.
A vulnerability has been found in BareBones BBEdit up to 15.5.5. The affected element is an unknown function of the component Lasso Language Tokenizer. Such manipulation leads to infinite loop. The attack can be executed remotely. Upgrading
CVE-2026-82604 | A flaw has been found in BareBones BBEdit up to 15.5.5. Impacted is an unknown function of the component Java Language Module. This manipulation causes uncontrolled recursion. Remote exploitation of the attack is possible. Upgrading to version 16.0 is recommended to address this issue. You should upgrade the affected component.
A flaw has been found in BareBones BBEdit up to 15.5.5. Impacted is an unknown function of the component Java Language Module. This manipulation causes uncontrolled recursion. Remote exploitation of the attack is possible. Upgrading to vers
CVE-2026-82603 | A vulnerability was detected in SeaCMS up to 13.6. This issue affects some unknown processing of the file /member.php?action=del_pl of the component Comment Cache. The manipulation of the argument itype/vid results in path traversal. The attack may be launched remotely. The exploit is now public and may be used.
A vulnerability was detected in SeaCMS up to 13.6. This issue affects some unknown processing of the file /member.php?action=del_pl of the component Comment Cache. The manipulation of the argument itype/vid results in path traversal. The at
CVE-2026-82602 | A security vulnerability has been detected in SeaCMS up to 13.6. This vulnerability affects unknown code of the file /ass.php. The manipulation leads to authorization bypass. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used.
A security vulnerability has been detected in SeaCMS up to 13.6. This vulnerability affects unknown code of the file /ass.php. The manipulation leads to authorization bypass. The attack may be initiated remotely. The exploit has been disclo
CVE-2026-82601 | A weakness has been identified in SeaCMS up to 13.6. This affects an unknown part of the file /err.php. Executing a manipulation of the argument errtxt can lead to cross site scripting. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.
A weakness has been identified in SeaCMS up to 13.6. This affects an unknown part of the file /err.php. Executing a manipulation of the argument errtxt can lead to cross site scripting. The attack can be launched remotely. The exploit has b
CVE-2026-75760 | Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_ai discloses provider request state and credentials in a user-facing validation error. In AshAi.Changes.Vectorize, when the embedding provider call fails the change added a changeset error whose message inspected the raw error term (An error occurred while generating embeddings: #{inspect(error)}). A plain-string add_error produces an Ash.Error.Changes.InvalidChange
Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_ai discloses provider request state and credentials in a user-facing validation error. In AshAi.Changes.Vectorize, when the embedding provider ca
CVE-2026-82580 | Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_ai discloses internal error text to chat users. In AshAi.ToolLoop and AshAi.Tools, an exception raised while executing a tool was serialized verbatim with Exception.message/1 into the tool-result content. That content is appended to the conversation, emitted as a {:tool_result, ...} stream event, and sent back to the model, which typically relays it to the user. No
Generation of Error Message Containing Sensitive Information vulnerability in ash-project ash_ai discloses internal error text to chat users. In AshAi.ToolLoop and AshAi.Tools, an exception raised while executing a tool was serialized verb
CVE-2026-82579 | Loop with Unreachable Exit Condition (Infinite Loop) vulnerability in ash-project ash_ai allows an attacker who can influence a model's output to hang the tool loop and drive unbounded, repeated model requests. AshAi.ToolLoop classifies a model response of :tool_calls, then filters the calls through normalize_tool_calls/2 and unprocessed_tool_calls/2. Both can empty the list: a call missing a valid name, or one reusing a tool_call_id that already has a resul
Loop with Unreachable Exit Condition (Infinite Loop) vulnerability in ash-project ash_ai allows an attacker who can influence a model's output to hang the tool loop and drive unbounded, repeated model requests. AshAi.ToolLoop classifies a
CVE-2026-82564 | Authorization Bypass Through User-Controlled Key vulnerability in ash-project ash_ai allows a caller of an identity-configured tool to update or destroy records it never identified, including every row in the table. In AshAi.Tool.Execution, identity_filter/3 built the update/destroy filter directly from the raw tool arguments as [{key, Map.get(arguments, to_string(key))}] and passed it to Ash.Query.do_filter/2. A map value is parsed as a predicate expression
Authorization Bypass Through User-Controlled Key vulnerability in ash-project ash_ai allows a caller of an identity-configured tool to update or destroy records it never identified, including every row in the table. In AshAi.Tool.Execution
CVE-2026-82600 | A security flaw has been discovered in SeaCMS up to 13.6. Affected by this issue is some unknown functionality of the file /zyapi.php?ac=videolist. Performing a manipulation of the argument ids results in sql injection. The attack can be initiated remotely. The exploit has been released to the public and may be used for attacks.
A security flaw has been discovered in SeaCMS up to 13.6. Affected by this issue is some unknown functionality of the file /zyapi.php?ac=videolist. Performing a manipulation of the argument ids results in sql injection. The attack can be in
CVE-2026-81315 | Origin Validation Error vulnerability in ash-project ash_ai allows a malicious web page to bypass the MCP server's DNS-rebinding protection and issue cross-site requests to a user's local MCP server with that user's actor. In AshAi.Mcp.Server, with the default allowed_origins: nil, origin_allowed?/3 accepts an origin when uri.host == conn.host and the forwarded scheme is https. Both values are attacker-controlled: conn.host comes from the Host header and the
Origin Validation Error vulnerability in ash-project ash_ai allows a malicious web page to bypass the MCP server's DNS-rebinding protection and issue cross-site requests to a user's local MCP server with that user's actor. In AshAi.Mcp.Ser
CVE-2026-77956 | Improper Control of Generation of Code (Code Injection) vulnerability in ash-project ash_ai allows a remote, unauthenticated client to execute arbitrary Elixir code. AshAi.Actions.Prompt evaluates prompt content through EEx.eval_string/2. The documented prompt: fn input, context -> ... end form lets the prompt content be built from action arguments, so when a prompt action's text incorporates request data, that attacker-controlled text is compiled and run as
Improper Control of Generation of Code (Code Injection) vulnerability in ash-project ash_ai allows a remote, unauthenticated client to execute arbitrary Elixir code. AshAi.Actions.Prompt evaluates prompt content through EEx.eval_string/2.