Skip to content

Menu
  • Home
Menu

CVE-2026-48106 – Arc Enterprise cluster replication accepts unauthenticated MsgReplicateSync messages, enabling cluster-wide data injection from any TLS-trusted peer

Posted on August 22, 2026

CVE ID :CVE-2026-48106 Published : Aug. 21, 2026, 11:16 p.m. | 1 hour, 17 minutes ago Description :Arc is an open, SQL-native time-series database for telemetry. Prior to version 26.06.1, Arc Enterprise’s cluster replication…

CVE-2026-48105 – Arc Enterprise cluster FSM applyRegisterFile accepts arbitrary file paths without validation, enabling cluster-wide path-traversal worm primitive

Posted on August 22, 2026

CVE ID :CVE-2026-48105 Published : Aug. 21, 2026, 11:16 p.m. | 1 hour, 17 minutes ago Description :Arc is an open, SQL-native time-series database for telemetry. Prior to version 26.06.1, Arc Enterprise’s Raft FSM…

CVE-2026-48050 – Arc: Unauthenticated access to Go debug pprof endpoints leaks runtime state and enables CPU-burn DoS

Posted on August 22, 2026

CVE ID :CVE-2026-48050 Published : Aug. 21, 2026, 11:16 p.m. | 1 hour, 17 minutes ago Description :Arc is an open, SQL-native time-series database for telemetry. Versions prior to 26.06.1 register Go’s `net/http/pprof` handlers…

CVE-2026-53530 – ratex-parser panics on `verb` with a multibyte delimiter (UTF-8 byte-boundary slice)

Posted on August 22, 2026

CVE ID :CVE-2026-53530 Published : Aug. 21, 2026, 10:16 p.m. | 2 hours, 17 minutes ago Description :RaTeX is a KaTeX-compatible math rendering engine written in Rust. Prior to version 0.1.11, the public parser…

CVE-2026-53528 – FileWiki has path traversal in RenameAsset via unsanitized oldFilename parameter

Posted on August 22, 2026

CVE ID :CVE-2026-53528 Published : Aug. 21, 2026, 10:16 p.m. | 2 hours, 17 minutes ago Description :LeafWiki is a self-hosted wiki. Versions 0.3.0 through 0.10.0 have a path traversal vulnerability in LeafWiki’s asset…

CVE-2026-16520 – Genians Genian NAC and Genian ZTNA SQL Injection and Authentication Bypass Vulnerability

Posted on August 21, 2026

CVE ID :CVE-2026-16520 Published : Aug. 21, 2026, 12:16 a.m. | 17 minutes ago Description :Improper input validation and Exposure of sensitive information through data queries vulnerability in Genians Genian NAC V4.0, Genians…

CVE-2026-77647 – SPIP Remote Code Execution Vulnerability

Posted on August 21, 2026

CVE ID :CVE-2026-77647 Published : Aug. 20, 2026, 11:16 p.m. | 1 hour, 17 minutes ago Description :SPIP before 4.4.20 allows unauthenticated remote attackers to execute arbitrary code, as exploited in the wild in…

CVE-2026-77645 – Critical Remote Code Execution (RCE) vulnerability reported in Windchill

Posted on August 21, 2026

CVE ID :CVE-2026-77645 Published : Aug. 20, 2026, 10:18 p.m. | 2 hours, 15 minutes ago Description :A critical remote code execution (RCE) vulnerability has been reported in PTC Windchill and PTC FlexPLM. The…

CVE-2026-77644 – Critical Bypass Access Control Vulnerability Reported for Windchill Risk and Reliability (WRR) Enterprise Edition

Posted on August 21, 2026

CVE ID :CVE-2026-77644 Published : Aug. 20, 2026, 10:18 p.m. | 2 hours, 15 minutes ago Description :A critical bypass access control vulnerability has been reported in PTC Windchill Risk and Reliability (WRR) Enterprise…

CVE-2026-72860 – 9router Server-Side Request Forgery via /api/provider-nodes/validate Because the IPv4-Mapped IPv6 Denylist Check Is Unreachable

Posted on August 21, 2026

CVE ID :CVE-2026-72860 Published : Aug. 20, 2026, 10:18 p.m. | 2 hours, 15 minutes ago Description :The POST /api/provider-nodes/validate route in 9router takes a caller-supplied baseUrl and issues server-side HTTP requests to it,…

Posts pagination

1 2 … 132 Next

Site map

  • About Us
  • Privacy Policy
  • Terms & Conditions of Use
©2026 | Design: Newspaperly WordPress Theme