🔴 Live Security Advisory & EPSS Exploit Radar

Zero-Day & Vulnerability Intelligence Hub

Echtzeit-Tracking mit EPSS Exploit-Wahrscheinlichkeiten, Angriffsvektor-Decodern und KI-Patch-Anleitungen.

354k+ 🇪🇺 EUVD-Datenbank
17 🔴 Critical im Radar
0 ⚠️ CISA KEV
0 🔓 Aktiv ausgenutzt
4 🧪 PoC verfügbar
📊 Historien-Charts — Criticals-Trend · Vendors · EPSS-Verteilung
🔴 Criticals pro Monat (12 M) 2025-08: 11 2025-09: 297 2025-10: 316 2025-11: 257 2025-12: 426 2026-01: 431 2026-02: 418 2026-03: 652 2026-04: 574 2026-05: 683 2026-06: 942 2026-07: 1333 2026-08: 1306 7.646 Criticals gesamt
🏢 Top-Vendor-Veröffentlichungen (6 M) Adobe Apple Google Linux Microsoft Oracle Corporation
● Adobe ● Apple ● Google ● Linux ● Microsoft ● Oracle
📈 EPSS-Verteilung (Messungen)
Tier2026-08-292026-08-30
≥90 %40
≥50 %40
≥10 %30
<10 %304300
Frühindikator · FIRST.org
Datenquellen & Methodik: Primärquelle ist die EUVD der ENISA (laufender Datenbank-Sync, alle 15 Minuten), abgeglichen mit dem CISA-KEV-Katalog und der NVD — Detail-Dossiers reichern fehlende Felder live per NVD an — mit Fallback auf CIRCL vulnerability-lookup (EU/Non-Profit, aggregiert CVE-, GitHub- und OSV-Advisories). Der CISA-KEV-Katalog (Known Exploited Vulnerabilities, ~1.700 aktiv ausgenutzte Schwachstellen) wird bei jedem Sync vollständig neu geladen und kreuzreferenziert — filterbar über die KEV-Pille. CVSS 3.1 wird nach Ampel-Logik aus Verteidigersicht dekodiert; EPSS bezeichnet die 30-Tage-Exploit-Wahrscheinlichkeit (FIRST.org).
🇪🇺 ENISA EUVD 🇺🇸 NVD ⚠️ CISA KEV ⚡ EPSS
Ökosystem & Hersteller Bedrohungs-Matrix:
Generic Security 35
Linux 4
WordPress 4
Microsoft 3
Ericsson 2
PaperCut 2
Schweregrad & Status:
Hersteller (Datenbank-weit, 90.562 Einträge):
Quelle:
🔍
● 2 Filter aktiv Alles zurücksetzen ✕
5.8 MEDIUM
EPSS 2.5%
CVE-2026-81322 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-81322 | ash-project ash_cloak up to 0.3.x AshCloak.Transformers.SetUpEncryption information disclosure (EUVD-2026-68282)

A vulnerability was found in ash-project ash_cloak up to 0.3.x and classified as problematic. Affected is an unknown function of the component AshCloak.Transformers.SetUpEncryption. Executing a manipulation can lead to information disclosur

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 29.6%
CVE-2026-81319 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-81319 | ash-project ash_cloak up to 0.3.x AshCloak.Calculations.Decrypt deserialization (EUVD-2026-68281)

A vulnerability was found in ash-project ash_cloak up to 0.3.x. It has been rated as problematic. Affected is the function AshCloak.Calculations.Decrypt. The manipulation leads to deserialization. This vulnerability is uniquely identified a

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 20.7%
CVE-2026-82556 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-82556 | Forgejo up to 15.0.4 Repository Migration is_migrate_allowed.go net.LookupIP server-side request forgery (Issue 13433 / EUVD-2026-68278)

A vulnerability has been found in Forgejo up to 15.0.4 and classified as critical. This issue affects the function net.LookupIP of the file services/migrations/allowlist/is_migrate_allowed.go of the component Repository Migration Handler. P

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 28.6%
CVE-2026-81643 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-81643 | ash-project ash_graphql up to 1.10.x Subscription Batcher AshGraphql.Subscription.Batcher.do_send improper authorization (EUVD-2026-68284)

A vulnerability has been found in ash-project ash_graphql up to 1.10.x and classified as problematic. This impacts the function AshGraphql.Subscription.Batcher.do_send of the component Subscription Batcher. Performing a manipulation results

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
5.8 MEDIUM
EPSS 3.4%
CVE-2026-82367 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-82367 | ash-project ash_graphql up to 1.10.0 Subscription Batcher AshGraphql.Subscription.Batcher.do_send information disclosure (EUVD-2026-68283)

A vulnerability, which was classified as problematic, was found in ash-project ash_graphql up to 1.10.0. This affects the function AshGraphql.Subscription.Batcher.do_send of the component Subscription Batcher. Such manipulation leads to inf

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 21.3%
CVE-2026-81633 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-81633 | ash-project ash_graphql up to 1.10.x Relay Node AshGraphql.Graphql.Resolver.resolve_node input validation (EUVD-2026-68285)

A vulnerability, which was classified as critical, has been found in ash-project ash_graphql up to 1.10.x. The impacted element is the function AshGraphql.Graphql.Resolver.resolve_node of the component Relay Node. This manipulation causes i

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 21.8%
CVE-2026-81636 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-81636 | ash-project ash_graphql up to 1.10.x Query Complexity AshGraphql.Graphql.Resolver.query_complexity allocation of resources (EUVD-2026-68286)

A vulnerability described as problematic has been identified in ash-project ash_graphql up to 1.10.x. This issue affects the function AshGraphql.Graphql.Resolver.query_complexity of the component Query Complexity. Executing a manipulation c

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 19.3%
CVE-2026-80223 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-80223 | ash-project ash_graphql up to 1.10.x Subscription Resolver Ash.can privileges management (EUVD-2026-68287)

A vulnerability classified as problematic was found in ash-project ash_graphql up to 1.10.x. The affected element is the function Ash.can of the component Subscription Resolver. The manipulation results in improper privilege management. Thi

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
5.8 MEDIUM
EPSS 5.2%
CVE-2026-78693 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-78693 | ash-project ash_graphql up to 1.10.x Handler AshGraphql.Errors build_error_path information disclosure (EUVD-2026-68288)

A vulnerability classified as problematic has been found in ash-project ash_graphql up to 1.10.x. Impacted is the function build_error_path of the file AshGraphql.Errors of the component Handler. The manipulation leads to information disclo

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 24.4%
CVE-2026-82587 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-82587 | Open5GS up to 2.7.7 AMF src/amf/namf-handler.c amf_namf_comm_decode_ue_mm_context_list ueContext.mmContextList[*].allowedNssai memory corruption (Issue 4398 / EUVD-2026-68289)

A vulnerability classified as problematic has been found in Open5GS up to 2.7.7. This vulnerability affects the function amf_namf_comm_decode_ue_mm_context_list of the file src/amf/namf-handler.c of the component AMF. This manipulation of t

CWE-119: Memory Corruption ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
5.8 MEDIUM
EPSS 6.4%
CVE-2026-64194 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-64194 | NLNETLABS Net::DNS up to 1.55 Decode decode wire denial of service (EUVD-2026-46052)

A vulnerability marked as problematic has been reported in NLNETLABS Net::DNS up to 1.55. The affected element is the function Net::DNS::DomainName::decode of the component Decode. Performing a manipulation of the argument wire results in d

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 21.8%
CVE-2026-56718 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-56718 | AJCloud AJY IPC prior 01.10715.11.37 jdbhttpd web service path traversal (EUVD-2026-68290)

A vulnerability was found in AJCloud AJY IPC. It has been classified as problematic. Affected by this vulnerability is an unknown functionality of the component jdbhttpd web service. The manipulation leads to path traversal. This vulnerabil

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 23.4%
CVE-2026-71954 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-71954 | D-Link DWR-M961 up to 1.1.5_C1_202607071107 formL2tpv3ConfigSetup tunnelid/sessionid command injection

A vulnerability has been found in D-Link DWR-M961 up to 1.1.5_C1_202607071107 and classified as very critical. Affected by this issue is some unknown functionality of the file /boafrm/formL2tpv3ConfigSetup of the component formL2tpv3ConfigS

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 20.4%
CVE-2026-71955 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-71955 | D-Link DWR-M961 up to 1.1.5_C1_202607071107 Wsc interface /boafrm/formWsc localPin/targetAPSsid/peerPin/peerRptPin command injection

A vulnerability was found in D-Link DWR-M961 up to 1.1.5_C1_202607071107 and classified as very critical. This affects an unknown part of the file /boafrm/formWsc of the component Wsc interface. Executing a manipulation of the argument loca

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 24.8%
CVE-2026-19017 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-19017 | HashiCorp Consul/Consul Enterprise path traversal (Nessus ID 333566)

A vulnerability was found in HashiCorp Consul and Consul Enterprise and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation results in path traversal. This vulnerability is known as CVE-20

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 27.1%
CVE-2026-71953 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-71953 | D-Link DWR-M961 up to 1.1.5_C1_202607071107 Ntp interface /boafrm/formNtp ntpServerIp1 command injection

A vulnerability, which was classified as very critical, was found in D-Link DWR-M961 up to 1.1.5_C1_202607071107. Affected by this vulnerability is an unknown functionality of the file /boafrm/formNtp of the component Ntp interface. Such ma

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 24.4%
CVE-2026-71949 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-71949 | D-Link DWR-M961 up to 1.1.5_C1_202607071107 USSD Setup /boafrm/formUSSDSetup ussdValue/selectMenuValue command injection

A vulnerability described as very critical has been identified in D-Link DWR-M961 up to 1.1.5_C1_202607071107. The impacted element is an unknown function of the file /boafrm/formUSSDSetup of the component USSD Setup. Executing a manipulati

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 19.8%
CVE-2026-71948 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-71948 | D-Link DWR-M961 up to 1.1.5_C1_202607071107 formDebugDiagnosticRun interface host command injection

A vulnerability marked as very critical has been reported in D-Link DWR-M961 up to 1.1.5_C1_202607071107. The affected element is an unknown function of the file /boafrm/formDebugDiagnosticRun of the component formDebugDiagnosticRun interfa

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 27.7%
CVE-2026-71945 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-71945 | D-Link DWR-M961 up to 1.1.5_C1_202607071107 LtefotaUpgradeFibocom formLtefotaUpgradeFibocom fota_url command injection

A vulnerability categorized as very critical has been discovered in D-Link DWR-M961 up to 1.1.5_C1_202607071107. This vulnerability affects unknown code of the file /boafrm/formLtefotaUpgradeFibocom of the component LtefotaUpgradeFibocom. T

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 27.7%
CVE-2026-71944 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-71944 | D-Link DWR-M961 up to 1.1.5_C1_202607071107 LTE Firmware Upgrade Interface formLtefotaUpgradeQuectel fota_url command injection (WID-SEC-2026-2706)

A vulnerability was found in D-Link DWR-M961 up to 1.1.5_C1_202607071107. It has been rated as very critical. This affects an unknown part of the file /boafrm/formLtefotaUpgradeQuectel of the component LTE Firmware Upgrade Interface. The ma

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 19%
CVE-2026-66151 💻 Lokal 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-66151 | SonicWall Global VPN Client up to 4.10.8.1108 Driver SWIPsec.sys out-of-bounds (WID-SEC-2026-2714)

A vulnerability, which was classified as problematic, was found in SonicWall Global VPN Client up to 4.10.8.1108. Affected by this issue is some unknown functionality of the file SWIPsec.sys of the component Driver. The manipulation results

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 32.6%
CVE-2026-19113 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-19113 | HashiCorp Consul/Consul Enterprise up to 2.0.2 HTTP API Endpoint resource consumption (Nessus ID 333557)

A vulnerability was found in HashiCorp Consul and Consul Enterprise up to 2.0.2. It has been classified as problematic. Affected by this issue is some unknown functionality of the component HTTP API Endpoint. This manipulation causes resour

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
9.5 CRITICAL
EPSS 67.5%
CVE-2026-60004 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

Gitea-Fix gegen RCE: 8.393 exponierte Server nach CISA-Frist im Angriff

LONDON (IT BOLTWISE) – Angreifer nutzen offenbar aktiv eine kritische RCE-Schwachstelle in Gitea über den diffpatch-Endpunkt. CISA hat CVE-2026-60004 bereits am 25. August in das Known-Exploited-Vulnerabilities-Katalogwerk aufgenommen, doch

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 30.2%
CVE-2026-73570 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

Week in review: Compromised Zimbra servers, previously patched Citrix NetScaler flaw exploited

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Unpatched Zimbra servers are falling to CVE-2026-73570 attacks At least 274 internet-facing Zimbra instances have been compromised by unknown

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
9.0 CRITICAL
EPSS 78.4%
CVE-2026-62878 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Microsoft

CVE-2026-62878: <b>Windows</b>-DNS-Lücke, CVSS 9,8, wurmfähig - Tech Insider

Windows DNS Server: CVE-2026-62878 mit CVSS 9,8 gilt als wurmfähig. Fakten, betroffene Versionen und Sofortmaßnahmen für Admins. Weiterlesen

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Patch-Tuesday Update einspielen oder betroffene Dienste in Windows Defender isolieren.
9.0 CRITICAL
EPSS 78.4%
CVE-2026-62878 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Microsoft

CVE-2026-62878: <b>Windows</b>-DNS-Lücke, CVSS 9,8, wurmfähig - Tech Insider

Windows DNS Server: CVE-2026-62878 mit CVSS 9,8 gilt als wurmfähig. Fakten, betroffene Versionen und Sofortmaßnahmen für Admins. Weiterlesen

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Patch-Tuesday Update einspielen oder betroffene Dienste in Windows Defender isolieren.
9.0 CRITICAL
EPSS 78.4%
CVE-2026-62878 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Microsoft

CVE-2026-62878: Windows-DNS-Lücke, CVSS 9,8, wurmfähig - Tech Insider

CVE-2026-62878: Windows-DNS-Lücke, CVSS 9,8, wurmfähig. Elias Virtanen; August 30, 2026; Cybersicherheit · Elias ... Weiterlesen

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Patch-Tuesday Update einspielen oder betroffene Dienste in Windows Defender isolieren.
7.5 HIGH
EPSS 22.3%
CVE-2023-49105 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CISA warnt: Ausnutzung kritischer ownCloud-Schwachstelle bei Datenabzug aus Forschungseinrichtungen

PHILIPPINEN / LONDON (IT BOLTWISE) – Die US-Behörde CISA hat die ownCloud-Schwachstelle CVE-2023-49105 in den Known Exploited Vulnerabilities (KEV)-Katalog aufgenommen, nachdem Berichte von aktiver Ausnutzung bekannt wurden. Die Lücke ermög

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
9.5 CRITICAL
EPSS 67.8%
CVE-2026-52813 🌐 Netzwerk (Remote) 🔑 Geringe Nutzerrechte nötig
Generic Security

Critical Gogs Flaw Enables Remote Code Execution Through Path Traversal

A critical vulnerability in Gogs, the self-hosted Git service, could allow authenticated attackers to execute commands on the server by abusing path traversal during creation. Tracked as CVE-2026-52813, the flaw was reported by Aikido secur

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
9.5 CRITICAL
EPSS 67.8%
CVE-2026-52813 🌐 Netzwerk (Remote) 🔑 Geringe Nutzerrechte nötig
Generic Security

Critical Gogs Flaw Enables Remote Code Execution Through Path Traversal

A critical vulnerability in Gogs, the self-hosted Git service, could allow authenticated attackers to execute commands on the server by abusing path traversal during creation. Tracked as CVE-2026-52813, the flaw was reported by Aikido secur

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
9.5 CRITICAL
EPSS 67.8%
CVE-2026-52813 🌐 Netzwerk (Remote) 🔑 Geringe Nutzerrechte nötig
Generic Security

Critical Gogs Flaw Enables Remote Code Execution Through Path Traversal

A critical vulnerability in Gogs, the self-hosted Git service, could allow authenticated attackers to execute commands on the server by abusing path traversal during creation. Tracked as CVE-2026-52813, the flaw was reported by Aikido secur

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
9.5 CRITICAL
EPSS 67.8%
CVE-2026-52813 🌐 Netzwerk (Remote) 🔑 Geringe Nutzerrechte nötig
Generic Security

Critical Gogs Flaw Enables Remote Code Execution Through Path Traversal

A critical vulnerability in Gogs, the self-hosted Git service, could allow authenticated attackers to execute commands on the server by abusing path traversal during creation. Tracked as CVE-2026-52813, the flaw was reported by Aikido secur

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
9.5 CRITICAL
EPSS 67.8%
CVE-2026-52813 🌐 Netzwerk (Remote) 🔑 Geringe Nutzerrechte nötig
Generic Security

Critical Gogs Path Traversal Flaw Enables Remote Code Execution via Git Hooks

A critical path traversal vulnerability in Gogs, the self-hosted Git service, could let authenticated attackers achieve remote code execution by planting malicious Git hooks outside the intended repository storage directory. Tracked as CVE-

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
9.0 CRITICAL
EPSS 79.3%
CVE-2023-49105 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CISA nimmt ownCloud-Sicherheitslücke in KEV auf: Angriff auf PH-Labor

LONDON (IT BOLTWISE) – Die US-Behörde CISA hat die ownCloud-Schwachstelle CVE-2023-49105 in den KEV-Katalog (Known Exploited Vulnerabilities) aufgenommen. Die Lücke (CVSS 9,8) betrifft einen WebDAV-Authentifizierungs-Bypass und kann Dateien

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
9.8 CRITICAL
🇪🇺 EUVD
EPSS 65.2%
CVE-2021-41259 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2021-41259 | DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. Notes: None.

DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: None. Reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. Notes: None.

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 22.3%
CVE-2023-49105 💻 Lokal 🔓 Keine Authentifizierung nötig
Linux

U.S. CISA adds ownCloud, Linux Kernel, and JFrog Artifactory flaws to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds ownCloud, Linux Kernel, and JFrog Artifactory flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Kernel-Paket aktualisieren (apt upgrade linux-image / yum update kernel) und System neu starten.
7.5 HIGH
EPSS 22.3%
CVE-2023-49105 💻 Lokal 🔓 Keine Authentifizierung nötig
Linux

U.S. CISA adds ownCloud, Linux Kernel, and JFrog Artifactory flaws to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds ownCloud, Linux Kernel, and JFrog Artifactory flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added the

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Kernel-Paket aktualisieren (apt upgrade linux-image / yum update kernel) und System neu starten.
9.5 CRITICAL
EPSS 77.9%
CVE-2026-76639 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

Unitree G1 EDU: Zwei RCE-Ketten per Chat-Interface und BLE bedrohen Root-Rechte

LONDON (IT BOLTWISE) – Zwei getrennte Root-Remote-Code-Execution-Ketten gefährden offenbar die Unitree G1 EDU. Eine der Routen nutzt einen netznahen Weg über chat_go und bashrunner, die andere startet über BLE-Nähe und führt später bis in d

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 21.6%
CVE-2026-74232 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Generic Security

ZBT-Router: Zwei neue Firmware-Implants geben Root-Zugriff ohne Authentifizierung

LONDON (IT BOLTWISE) – Zwei zuvor undokumentierte Firmware-Implants in ZBT-Routern ermöglichen einem Angreifer ohne Authentifizierung Root-Rechte auf betroffenen Geräten. Die Komponenten SPEAKINGSTONE und DARKLANTERN tragen die CVE-2026-742

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.5 HIGH
EPSS 21.3%
CVE-2026-53362 💻 Lokal 🔓 Keine Authentifizierung nötig
Linux

OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems

CISA has added the exploited flaw, CVE-2026-53362, to its KEV catalog, alongside a JFrog vulnerability exploited by OpenAI agents. The post OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems appeared first on SecurityWeek. W

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Kernel-Paket aktualisieren (apt upgrade linux-image / yum update kernel) und System neu starten.
7.5 HIGH
EPSS 21.3%
CVE-2026-53362 💻 Lokal 🔓 Keine Authentifizierung nötig
Linux

OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems

CISA has added the exploited flaw, CVE-2026-53362, to its KEV catalog, alongside a JFrog vulnerability exploited by OpenAI agents. The post OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems appeared first on SecurityWeek. W

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Kernel-Paket aktualisieren (apt upgrade linux-image / yum update kernel) und System neu starten.
6.1 MEDIUM
🇪🇺 EUVD
EPSS 5.5%
CVE-2026-5953 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Ceviz Informatics Inc.

CVE-2026-5953 | Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Ceviz Informatics Inc. Web Design allows Reflected XSS. This issue affects Web Design: through 25082026.

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Ceviz Informatics Inc. Web Design allows Reflected XSS. This issue affects Web Design: through 25082026.

CWE-79: Cross-Site Scripting ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
6.1 MEDIUM
🇪🇺 EUVD
EPSS 3.9%
CVE-2026-5800 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Dayneks Software Industry and Trade Inc.

CVE-2026-5800 | Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Dayneks Software Industry and Trade Inc. E-Commerce Platform allows Reflected XSS. This issue affects E-Commerce Platform: through 28082026. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

Improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Dayneks Software Industry and Trade Inc. E-Commerce Platform allows Reflected XSS. This issue affects E-Commerce Platform: through 280820

CWE-79: Cross-Site Scripting ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
6.1 MEDIUM
🇪🇺 EUVD
EPSS 3.8%
CVE-2026-82324 💻 Lokal 🔓 Keine Authentifizierung nötig
Generic Security

CVE-2026-82324 | A flaw was found in the file-iff (IFF/ILBM) plugin in GIMP. When processing a specially crafted IFF/ILBM image file, the plugin does not properly validate the HAM row size and improperly handles cases where the number of color planes (nPlanes) is zero. This causes a row size mismatch that bypasses memory bounds checking, resulting in heap out-of-bounds reads. This issue can result in an application crash, leading to a denial of service or a limited informatio

A flaw was found in the file-iff (IFF/ILBM) plugin in GIMP. When processing a specially crafted IFF/ILBM image file, the plugin does not properly validate the HAM row size and improperly handles cases where the number of color planes (nPlan

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
5.3 MEDIUM
🇪🇺 EUVD
EPSS 3.6%
CVE-2026-15603 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
🧪 morgan

CVE-2026-15603 | morgan is an HTTP request logger middleware for Node.js. In versions prior to 1.12.0, the internal helper that escapes log token values did not neutralize the Unicode line separator characters U+0085 (Next Line), U+2028 (Line Separator), and U+2029 (Paragraph Separator). An unauthenticated remote client can place these characters in an attacker-controlled log token, for example a Basic auth username surfaced through the remote-user token, so that Unicode-awar

morgan is an HTTP request logger middleware for Node.js. In versions prior to 1.12.0, the internal helper that escapes log token values did not neutralize the Unicode line separator characters U+0085 (Next Line), U+2028 (Line Separator), an

CWE-117 ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
8.7 HIGH
🇪🇺 EUVD
EPSS 26.5%
CVE-2026-19412 🌐 Adjacent Network 🔓 Keine Authentifizierung nötig
CP Plus

CVE-2026-19412 | This vulnerability exists in the CP Plus CP-XR-DE21-S Router due to the presence of hardcoded HTTP Digest authentication credentials in the firmware that are identical across all devices running the affected firmware. An attacker with access to the local network could exploit this vulnerability by obtaining the hardcoded authentication information from the firmware. Successful exploitation of this vulnerability could allow the attacker to gain unauthorize

This vulnerability exists in the CP Plus CP-XR-DE21-S Router due to the presence of hardcoded HTTP Digest authentication credentials in the firmware that are identical across all devices running the affected firmware. An attacker with acces

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
9.5 CRITICAL
EPSS 64.3%
CVE-2026-76581 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
WordPress

Critical WordPress Plugin Flaw Allows Unauthenticated Administrator Account Takeover

A critical authentication bypass vulnerability has been identified in the WPMU DEV Dashboard WordPress plugin, which could allow unauthenticated attackers to gain administrator-level access to vulnerable sites configured with Hub Single Sig

CWE-287: Improper Authentication ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Plugin / Theme im WP-Dashboard auf die neueste Version aktualisieren oder temporär deaktivieren.
9.5 CRITICAL
EPSS 64.3%
CVE-2026-76581 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
WordPress

Critical WordPress Plugin Flaw Allows Unauthenticated Administrator Account Takeover

A critical authentication bypass vulnerability has been identified in the WPMU DEV Dashboard WordPress plugin, which could allow unauthenticated attackers to gain administrator-level access to vulnerable sites configured with Hub Single Sig

CWE-287: Improper Authentication ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Plugin / Theme im WP-Dashboard auf die neueste Version aktualisieren oder temporär deaktivieren.
9.5 CRITICAL
EPSS 64.3%
CVE-2026-76581 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
WordPress

Critical WordPress Plugin Flaw Allows Unauthenticated Administrator Account Takeover

A critical authentication bypass vulnerability has been identified in the WPMU DEV Dashboard WordPress plugin, which could allow unauthenticated attackers to gain administrator-level access to vulnerable sites configured with Hub Single Sig

CWE-287: Improper Authentication ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Plugin / Theme im WP-Dashboard auf die neueste Version aktualisieren oder temporär deaktivieren.
9.5 CRITICAL
EPSS 64.3%
CVE-2026-76581 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
WordPress

Critical WordPress Plugin Flaw Allows Unauthenticated Administrator Account Takeover

A critical authentication bypass vulnerability has been identified in the WPMU DEV Dashboard WordPress plugin, which could allow unauthenticated attackers to gain administrator-level access to vulnerable sites configured with Hub Single Sig

CWE-287: Improper Authentication ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Plugin / Theme im WP-Dashboard auf die neueste Version aktualisieren oder temporär deaktivieren.
8.8 HIGH
🇪🇺 EUVD
EPSS 30.3%
CVE-2026-13761 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
Pegasystems

CVE-2026-13761 | Pega Platform versions 7.1.0 through 25.1.2 are affected by an improper validation of inputs that are used for loop conditions, potentially leading to a denial of service or other consequences because of excessive looping.

Pega Platform versions 7.1.0 through 25.1.2 are affected by an improper validation of inputs that are used for loop conditions, potentially leading to a denial of service or other consequences because of excessive looping.

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
5.5 MEDIUM
🇪🇺 EUVD
EPSS 6.7%
CVE-2026-58107 🌐 Netzwerk (Remote) 🔐 Admin-Rechte nötig
🧪 Ericsson

CVE-2026-58107 | CodeChecker's massStoreRun processing path performs one-shot decompression of attacker-controlled, Base64-encoded zlib data without enforcing a maximum decompressed size. An authenticated user with permission to store analysis runs can submit a highly compressed payload that expands to a significantly larger byte sequence. Because the entire decompressed output is materialized in memory before being written to a temporary file, a sufficiently large payload

CodeChecker's massStoreRun processing path performs one-shot decompression of attacker-controlled, Base64-encoded zlib data without enforcing a maximum decompressed size. An authenticated user with permission to store analysis runs can s

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
2.0 LOW
🇪🇺 EUVD
EPSS 4.5%
CVE-2026-58106 💻 Lokal 🔓 Keine Authentifizierung nötig
🧪 Ericsson

CVE-2026-58106 | CVE-2025-40843 https://github.com/advisories/GHSA-5xf2-f6ch-6p8r  was fixed by replacing unchecked strcpy() with a bounded safe_strcpy() helper. At ldlogger-tool-gcc.c:129 the destination passed to that helper is fullPath + 2, but the size passed down is the full PATH_MAX. safe_strcpy() is strncpy(), which NUL-pads the destination out to the whole n, so this site writes 4096 bytes into the 4094 that remain — a 2-byte stack overflow on every invocation, indepe

CVE-2025-40843 https://github.com/advisories/GHSA-5xf2-f6ch-6p8r  was fixed by replacing unchecked strcpy() with a bounded safe_strcpy() helper. At ldlogger-tool-gcc.c:129 the destination passed to that helper is fullPath + 2, but the size

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
6.8 MEDIUM
🇪🇺 EUVD
EPSS 4.5%
CVE-2026-82181 💻 Lokal 🔑 Geringe Nutzerrechte nötig
Le-yan

CVE-2026-82181 | Medical Practice Management System developed by Le-yan has a Sensitive Data in URL vulnerability. Unauthenticated remote attackers can obtain sensitive information via victim's browser history or log files.

Medical Practice Management System developed by Le-yan has a Sensitive Data in URL vulnerability. Unauthenticated remote attackers can obtain sensitive information via victim's browser history or log files.

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
9.4 CRITICAL
🇪🇺 EUVD
EPSS 58.3%
CVE-2026-82078 🌐 Netzwerk (Remote) 🔐 Admin-Rechte nötig
PaperCut

CVE-2026-82078 | An unsafe dynamic class loading vulnerability exists in the database connection utilities of PaperCut MF and PaperCut NG. The application instantiates database driver classes based on configurable driver names without validating against an allowlist of approved drivers. If an attacker can manipulate system configuration parameters, this enables the execution of arbitrary Java bytecode residing on the application classpath under the security context of the Pap

An unsafe dynamic class loading vulnerability exists in the database connection utilities of PaperCut MF and PaperCut NG. The application instantiates database driver classes based on configurable driver names without validating against an

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
8.8 HIGH
🇪🇺 EUVD
EPSS 30.4%
CVE-2026-81578 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
PaperCut

CVE-2026-81578 | An improper access control vulnerability exists in the web management interface of PaperCut MF and PaperCut NG. Under specific conditions, unauthenticated remote requests targeting administrative functions can trigger backend actions prior to the completion of access validation checks. This allows an unauthenticated remote attacker to modify certain system configurations.

An improper access control vulnerability exists in the web management interface of PaperCut MF and PaperCut NG. Under specific conditions, unauthenticated remote requests targeting administrative functions can trigger backend actions prior

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
5.1 MEDIUM
🇪🇺 EUVD
EPSS 2.2%
CVE-2026-82112 🌐 Netzwerk (Remote) 🔑 Geringe Nutzerrechte nötig
🧪 houtini-ai

CVE-2026-82112 | A flaw has been found in houtini-ai houtini-lm up to 2.13.2. The impacted element is an unknown function of the file src/index.ts of the component code_task_files. Executing a manipulation can lead to path traversal. The attack can be launched remotely. This patch is called 35d97bca0531894da36a85aedb95312da1bd5b7a. It is best practice to apply a patch to resolve this issue.

A flaw has been found in houtini-ai houtini-lm up to 2.13.2. The impacted element is an unknown function of the file src/index.ts of the component code_task_files. Executing a manipulation can lead to path traversal. The attack can be launc

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
5.3 MEDIUM
🇪🇺 EUVD
EPSS 6.7%
CVE-2026-5096 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
WPEverest

CVE-2026-5096 | The Everest Forms plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 3.4.4. This is due to the `load_previous_field_value()` method in `class-evf-form-task.php` accepting arbitrary URL values from `$_POST` data for upload fields without domain restriction, which are then passed to `wp_remote_head()` in the `get_local_file_size()` method of `class-evf-form-fields-upload.php`. This makes it possible for unauth

The Everest Forms plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 3.4.4. This is due to the `load_previous_field_value()` method in `class-evf-form-task.php` accepting arbitrary URL va

CWE-94: Code Injection ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
7.2 HIGH
🇪🇺 EUVD
EPSS 26.8%
CVE-2026-6176 🌐 Netzwerk (Remote) 🔓 Keine Authentifizierung nötig
ivole

CVE-2026-6176 | The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the aggregated review form submission in versions up to and including 5.106.0. This is due to insufficient input sanitization and output escaping on user-supplied review comment text. The plugin accepts review submissions from unauthenticated users through the 'cr_local_forms_submit' AJAX action without sanitizing HTML content before storing it via wp_ins

The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the aggregated review form submission in versions up to and including 5.106.0. This is due to insufficient input sanitization and out

CWE-79: Cross-Site Scripting ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
6.4 MEDIUM
🇪🇺 EUVD
EPSS 4.1%
CVE-2026-3423 🌐 Netzwerk (Remote) 🔑 Geringe Nutzerrechte nötig
smub

CVE-2026-3423 | The Envira Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the gallery 'description' configuration field in all versions up to, and including, 1.12.4 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses a page displaying the gallery with a description ena

The Envira Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the gallery 'description' configuration field in all versions up to, and including, 1.12.4 due to insufficient input sanitization and output escaping.

CWE-79: Cross-Site Scripting ✓ Offizieller Patch / Advisory verfügbar
💡 Gegenmaßnahme: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.