EILMELDUNGEN LIVE
🐧 Linux TippsDistribution Release: NawaOS 2.0(27.08.2026 um 10:53 Uhr)
🐧 Linux TippsDistribution Release: Butterbian 0.4.0(27.08.2026 um 13:10 Uhr)
🐧 Linux TippsDistribution Release: Liya Linux 2026.08.29(29.08.2026 um 16:48 Uhr)
🔧 AI Nachrichten DistroWatch Weekly, Issue 1188(31.08.2026 um 03:21 Uhr)
🔧 Programmierung[Unstable Update] September 2026(01.09.2026 um 15:32 Uhr)
🔧 ProgrammierungSecurity: Mehrere Probleme in python-sqlparse (SUSE)(02.09.2026 um 08:14 Uhr)
🔧 ProgrammierungSecurity: Mehrere Probleme in python-sqlparse (SUSE)(02.09.2026 um 08:14 Uhr)
🐧 Linux TippsSecurity: Denial of Service in gdk-pixbuf2 (Fedora)(02.09.2026 um 08:24 Uhr)
🐧 Linux TippsSecurity: Mangelnde Eingabeprüfung in bubblewrap (Fedora)(02.09.2026 um 08:24 Uhr)
🐧 Linux TippsSecurity: Denial of Service in rkcommon (Fedora)(02.09.2026 um 08:24 Uhr)
🐧 Linux TippsDistribution Release: NawaOS 2.0(27.08.2026 um 10:53 Uhr)
🐧 Linux TippsDistribution Release: Butterbian 0.4.0(27.08.2026 um 13:10 Uhr)
🐧 Linux TippsDistribution Release: Liya Linux 2026.08.29(29.08.2026 um 16:48 Uhr)
🔧 AI Nachrichten DistroWatch Weekly, Issue 1188(31.08.2026 um 03:21 Uhr)
🔧 Programmierung[Unstable Update] September 2026(01.09.2026 um 15:32 Uhr)
🔧 ProgrammierungSecurity: Mehrere Probleme in python-sqlparse (SUSE)(02.09.2026 um 08:14 Uhr)
🔧 ProgrammierungSecurity: Mehrere Probleme in python-sqlparse (SUSE)(02.09.2026 um 08:14 Uhr)
🐧 Linux TippsSecurity: Denial of Service in gdk-pixbuf2 (Fedora)(02.09.2026 um 08:24 Uhr)
🐧 Linux TippsSecurity: Mangelnde Eingabeprüfung in bubblewrap (Fedora)(02.09.2026 um 08:24 Uhr)
🐧 Linux TippsSecurity: Denial of Service in rkcommon (Fedora)(02.09.2026 um 08:24 Uhr)

10 🕛 kürzlich 1 Min Lesezeit CVE-RADAR
0

CVE-2026-47889 | VMware Spring Framework up to 6.2.19/7.0.8 Cookies sameSite sensitive cookie with improper samesite attribute (WID-SEC-2026-2955)

Cyber Threat & Vulnerability Dossier CVSS 7.5 HIGH EPSS 21.9%
CVE-2026-47889
ANGRIPPSVEKTOR
🌐 Netzwerk (Remote)
AUTHENTIFIZIERUNG
🔓 Keine Authentifizierung nötig
SCHADENSPROFIL
RCE / Vollzugriff / Full Compromise
CWE-KLASSIFIZIERUNG
CWE-94: Code Injection
Handlungsempfehlung: Sicherheits-Update des Herstellers zeitnah einspielen und Netzwerksegmentierung prüfen.
Im CVE-Radar öffnen
↗ Quelle (VulDB Updates)
🔬 IoC Intelligence (1 Indikatoren erkannt)
CVE-2026-47889
🗣️ Stimme:

A vulnerability was found in VMware Spring Framework up to 6.2.19/7.0.8. It has been rated as critical. The impacted element is an unknown function of the component Cookies. The manipulation of the argument sameSite leads to sensitive cookie with improper samesite attribute. This vulnerability is referenced as CVE-2026-47889. Remote exploitation...

Vollständiger Original-Bericht
Ausführliche Details, Code-Beispiele & Hersteller-Stellungnahme auf vuldb.com.
↗ Original-Artikel auf vuldb.com lesen
Wie bewertest du diesen Beitrag?
1 Klick Feedback
99 Fachleser & IT-Security Experten haben diesen Report heute geteilt
Teilen mit Netzwerk & Team:
Community Threat-Level Barometer
Live Votum

Wie stufst du das Risiko dieser Schwachstelle / Bedrohung für dein Unternehmen ein?

Community-Einschätzung (Live): 48 Stimmen
🟢 Gering: 45% 🟡 Beobachten: 35% 🔴 Akut: 20%

Community-Analysen & Experten-Meinungen 0

Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf Eigene Analyse verfassen“!
Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum
🔴 Akute Relevanz 52%
🟡 In Evaluierung 27%
🟢 Keine Auswirkung 16%
Spannende Innovation 5%
Verwandte Story-Cluster & Quellen (Vektor-KI)
Port 8095 Engine
6 Quellen
Security: Denial of Service in gdk-pixbuf2 (Fedora)
3 Quellen
Distribution Release: NawaOS 2.0
3 Quellen
Security: Mehrere Probleme in python-sqlparse (SUSE)