CVE ID :CVE-2026-53939 Published : Sept. 9, 2026, 12:17 a.m. | 41 minutes ago Description :OpenIDC/cjose is a C library implementing the Javascript Object Signing and Encryption (JOSE). In versions 0.6.1 through 0.6.2.5,…
CVE-2026-53938 – OpenIDC/cjose has a heap buffer overflow in AES Key Wrap decryption (A128KW/A192KW/A256KW)
CVE ID :CVE-2026-53938 Published : Sept. 9, 2026, 12:17 a.m. | 41 minutes ago Description :OpenIDC/cjose is a C library implementing the Javascript Object Signing and Encryption (JOSE). Prior to version 0.6.2.5, cjose’s…
CVE-2026-55250 – Maravel-Framework Token Replay Vulnerability via Premature JWT Blacklist Eviction in Tagged Caches
CVE ID :CVE-2026-55250 Published : Sept. 8, 2026, 11:17 p.m. | 1 hour, 41 minutes ago Description :Maravel, a PHP framework oriented towards dependency injection, prior to version 10.74.0 has a high-severity Token Replay…
CVE-2026-53581 – ntp: write path traversal
CVE ID :CVE-2026-53581 Published : Sept. 8, 2026, 11:17 p.m. | 1 hour, 41 minutes ago Description :OPNsense is a FreeBSD based firewall and routing platform. Prior to version 26.1.9 of opnsense/core and version…
CVE-2026-86076 – n8n: Expression Sandbox Escape in Editor-UI Enables Stored Cross-User JavaScript Execution
CVE ID :CVE-2026-86076 Published : Sept. 8, 2026, 10:19 p.m. | 2 hours, 39 minutes ago Description :n8n is an open source workflow automation platform. Prior to 1.123.76, 2.37.7, and 2.38.2, the expression compiler…
CVE-2026-76969 – Credential disclosure in multitenant applications using SAP Cloud Application Programming Model (CAP)
CVE ID :CVE-2026-76969 Published : Sept. 8, 2026, 12:12 a.m. | 42 minutes ago Description :@sap/cds-mtxs NPM library does not perform sufficient checks on certain functionality used in multitenant CAP applications with extensibility…
CVE-2026-76958 – XML External Entity (XXE) Vulnerability in SAP Integration Suite
CVE ID :CVE-2026-76958 Published : Sept. 8, 2026, 12:11 a.m. | 44 minutes ago Description :SAP Integration Suite does not sufficiently validate XML documents accepted from untrusted sources in certain internal components. An…
CVE-2026-66768 – Improper Access Control in SAP NetWeaver (SAP GUI for Java)
CVE ID :CVE-2026-66768 Published : Sept. 8, 2026, 12:11 a.m. | 44 minutes ago Description :SAP GUI for Java does not correctly enforce the trust level policy for certain functions invoked from a…
CVE-2026-58240 – Missing Authentication check in SAP NetWeaver (Message Server)
CVE ID :CVE-2026-58240 Published : Sept. 8, 2026, 12:10 a.m. | 44 minutes ago Description :SAP NetWeaver Message Server does not sufficiently validate the authenticity of internal application server components during registration. An…
CVE-2026-44756 – Memory Corruption vulnerability in SAP Extended Passport (EPP) Processing
CVE ID :CVE-2026-44756 Published : Sept. 8, 2026, 12:10 a.m. | 45 minutes ago Description :A memory safety vulnerability exists in the Extended Passport Protocol (EPP) processing library. Under specific conditions, an unauthenticated…