CVE ID :CVE-2026-82593 Published : Aug. 31, 2026, 12:16 a.m. | 19 minutes ago Description :A flaw has been found in D-Link DIR-825M 1.1.8. This impacts the function sub_41802C of the file /boafrm/formLtefotaUpgradeFibocom…
CVE-2026-82592 – D-Link DIR-825M Disk Formatting Handler Endpoint formDiskFormat sub_46725C stack-based overflow
CVE ID :CVE-2026-82592 Published : Aug. 30, 2026, 11:17 p.m. | 1 hour, 19 minutes ago Description :A vulnerability was detected in D-Link DIR-825M 1.1.8. This affects the function sub_46725C of the file /boafrm/formDiskFormat…
CVE-2026-81636 – Query-complexity limit bypass via first/last pagination arguments in AshGraphql enables denial of service
CVE ID :CVE-2026-81636 Published : Aug. 30, 2026, 7:17 p.m. | 5 hours, 19 minutes ago Description :Allocation of Resources Without Limits or Throttling vulnerability in ash-project ash_graphql allows an unauthenticated client to bypass…
CVE-2026-82549 – Linux Foundation Magma SecurityModeComplete integrity check
CVE ID :CVE-2026-82549 Published : Aug. 30, 2026, 4:16 p.m. | 8 hours, 19 minutes ago Description :A vulnerability was identified in Linux Foundation Magma 1.9.0. This affects an unknown function of the component…
CVE-2026-82654 – SiYuan before v3.8.1 Stored XSS via block name
CVE ID :CVE-2026-82654 Published : Aug. 30, 2026, 3:16 p.m. | 9 hours, 19 minutes ago Description :SiYuan before v3.8.1 fails to properly escape block name, alias, and memo fields in hint, backlink, and…
CVE-2026-15369 – Custom User Registration Fields for WooCommerce <= 2.2.3 – Unauthenticated Privilege Escalation via 'afreg_select_user_role' Parameter in Store API Checkout
CVE ID :CVE-2026-15369 Published : Aug. 29, 2026, 8:16 p.m. | 4 hours, 19 minutes ago Description :The Custom User Registration Fields for WooCommerce plugin for WordPress is vulnerable to Privilege Escalation in versions…
CVE-2026-82475 – iFlytek astron-agent through 1.1.1 Workflow Hijacking via Missing Ownership Check
CVE ID :CVE-2026-82475 Published : Aug. 29, 2026, 5:18 p.m. | 7 hours, 18 minutes ago Description :iFlytek astron-agent through 1.1.1 contains an authorization bypass vulnerability in the copyFlow endpoint that fails to validate…
CVE-2026-82473 – KubeEdge CloudCore through 1.23.1 Missing Authentication on Node Task Endpoints
CVE ID :CVE-2026-82473 Published : Aug. 29, 2026, 5:17 p.m. | 7 hours, 18 minutes ago Description :KubeEdge CloudCore through 1.23.1 accepts node task status reports on its HTTPS server without authentication verification. Attackers…
CVE-2026-82466 – Rodauth before 2.46.0 Authentication Bypass via webauthn_login
CVE ID :CVE-2026-82466 Published : Aug. 29, 2026, 5:17 p.m. | 7 hours, 18 minutes ago Description :Rodauth before 2.46.0 contains an authentication bypass vulnerability in the webauthn_login route that allows logged-in users to…
CVE-2026-82463 – pac4j-core before 6.5.6 Authorization Bypass via Reversed Profile Type Check
CVE ID :CVE-2026-82463 Published : Aug. 29, 2026, 5:17 p.m. | 7 hours, 18 minutes ago Description :pac4j-core before 6.5.6 contains an authentication bypass vulnerability in CheckProfileTypeAuthorizer that reverses the profile type validation logic….