CVE ID :CVE-2026-108474 Published : Oct. 10, 2026, 12:17 a.m. | 1 hour, 12 minutes ago Description :In JetBrains Exposed before 1.5.1 sQL injection was possible via unescaped string arguments of several SQL functions…
CVE-2026-108269 – ra-tls-clients: RA-TLS challenge verifier accepted quotes not bound to the TLS session
CVE ID :CVE-2026-108269 Published : Oct. 9, 2026, 10:16 p.m. | 1 hour, 13 minutes ago Description :Remote Attestation TLS Clients provides multi-language utilities for verifying attested TLS connections. Prior to 0.5.0, the Rust…
CVE-2026-108268 – enclave-os-virtual: RA-TLS challenge certificates were not bound to the TLS session
CVE ID :CVE-2026-108268 Published : Oct. 9, 2026, 10:16 p.m. | 1 hour, 13 minutes ago Description :Enclave OS Virtual runs container workloads inside confidential virtual machines with end-to-end attestation. Prior to tdx-v0.2.43 and…
CVE-2026-108267 – Privasys Go fork: RA-TLS challenge mode did not bind attestation evidence to the TLS session
CVE ID :CVE-2026-108267 Published : Oct. 9, 2026, 10:16 p.m. | 1 hour, 13 minutes ago Description :Privasys Go is a maintained fork of the Go programming language that adds RA-TLS support to crypto/tls….
CVE-2026-22061 – CVE-2026-22061 Debug Log Information Disclosure Vulnerability in Trident
CVE ID :CVE-2026-22061 Published : Oct. 9, 2026, 10:02 p.m. | 1 hour, 27 minutes ago Description :Trident versions v25.02.1 through v26.06.1 are susceptible to a vulnerability that could allow an authenticated attacker with…
CVE-2026-62376 – Vikunja: Plaintext storage of password-reset/email-confirm tokens in database enables account takeover on DB read access
CVE ID :CVE-2026-62376 Published : Oct. 9, 2026, 9:17 p.m. | 2 hours, 12 minutes ago Description :Vikunja is an open-source self-hosted task management platform. Versions prior to 2.4.0 store password-reset, email-confirmation, and account-deletion…
CVE-2026-96207 – Microsoft Partner Center Elevation of Privilege Vulnerability
CVE ID :CVE-2026-96207 Published : Oct. 8, 2026, 11:17 p.m. | 2 hours, 12 minutes ago Description :Improper certificate validation in Microsoft Partner Center allows an unauthorized attacker to elevate privileges over a network….
CVE-2026-94510 – Microsoft Bookings Elevation of Privilege Vulnerability
CVE ID :CVE-2026-94510 Published : Oct. 8, 2026, 11:17 p.m. | 2 hours, 12 minutes ago Description :Authorization bypass through user-controlled key in Microsoft Bookings allows an unauthorized attacker to elevate privileges over a…
CVE-2026-88131 – Microsoft Dataverse Remote Code Execution Vulnerability
CVE ID :CVE-2026-88131 Published : Oct. 8, 2026, 11:17 p.m. | 2 hours, 12 minutes ago Description :Deserialization of untrusted data in Microsoft Dataverse allows an unauthorized attacker to execute code over a network….
CVE-2026-83943 – Azure API Center Information Disclosure Vulnerability
CVE ID :CVE-2026-83943 Published : Oct. 8, 2026, 11:17 p.m. | 2 hours, 12 minutes ago Description :Exposure of sensitive information to an unauthorized actor in Azure API Center allows an unauthorized attacker to…