CVE ID :CVE-2026-48120 Published : Aug. 7, 2026, 11:17 p.m. | 39 minutes ago Description :Kakoune is a code editor. Prior to version 2026.05.21, the bundled, enabled by default, `autorestore.kak` script can be…
CVE-2026-48026 – lakeFS vulnerable to stored XSS in rendered markdown previews via raw HTML
CVE ID :CVE-2026-48026 Published : Aug. 7, 2026, 11:17 p.m. | 39 minutes ago Description :lakeFS is an open-source tool that transforms object storage into a Git-like repositories. Prior to version 1.81.1 of…
CVE-2026-46409 – OpenYak local API: unauthenticated CSRF chain leads to Remote Code Execution
CVE ID :CVE-2026-46409 Published : Aug. 7, 2026, 11:17 p.m. | 39 minutes ago Description :OpenYak is a local-first agent runtime for reliable tool-using models, with a desktop workspace built on top. Prior…
CVE-2026-48170 – scimPatch vulnerable to prototype pollution via unfiltered keys in patch
CVE ID :CVE-2026-48170 Published : Aug. 7, 2026, 10:16 p.m. | 1 hour, 39 minutes ago Description :`scim-patch`, a library to perform SCIM patch, prior to version 0.9.1 performs prototype pollution when applying a…
CVE-2026-48169 – PraisonAI has Cross-Workspace IDOR and Privilege Escalation via Platform API
CVE ID :CVE-2026-48169 Published : Aug. 7, 2026, 10:16 p.m. | 1 hour, 39 minutes ago Description :PraisonAI is a multi-agent teams system. Versions prior to 0.1.4 of the PraisonAI Platform API have two…
CVE-2026-70332 – Microsoft Office SharePoint Spoofing Vulnerability
CVE ID :CVE-2026-70332 Published : 2026年8月7日 00:16 | 1 小时,36 分钟 ago Description :Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network. Severity: 9.6 |…
CVE-2026-68823 – Azure Confidential Ledger Remote Code Execution Vulnerability
CVE ID :CVE-2026-68823 Published : 2026年8月7日 00:16 | 1 小时,36 分钟 ago Description :Exposed dangerous method or function in Azure Confidential Ledger allows an authorized attacker to execute code over a network. Severity: 9.1…
CVE-2026-65668 – Microsoft Purview eDiscovery Elevation of Privilege Vulnerability
CVE ID :CVE-2026-65668 Published : 2026年8月7日 00:16 | 1 小时,36 分钟 ago Description :Improper access control in Microsoft Purview eDiscovery allows an authorized attacker to elevate privileges over a network. Severity: 8.8 | HIGH…
CVE-2026-65667 – Microsoft Teams Elevation of Privilege Vulnerability
CVE ID :CVE-2026-65667 Published : 2026年8月7日 00:16 | 1 小时,36 分钟 ago Description :Missing authorization in Microsoft Teams allows an unauthorized attacker to elevate privileges over a network. Severity: 10.0 | CRITICAL Visit the…
CVE-2026-63508 – Microsoft Planetary Computer Pro Elevation of Privilege Vulnerability
CVE ID :CVE-2026-63508 Published : 2026年8月7日 00:16 | 1 小时,36 分钟 ago Description :Missing authentication for critical function in Microsoft Planetary Computer Pro allows an unauthorized attacker to elevate privileges over a network. Severity:…