Rapid7 · Rapid7

Emergent Threat6

TitleEitWModules
TitleEitWModules
CVE-2026-81814: flowintel: Affected versions of Flowintel render calendar event titles using innerHTMLN/A5.1 MediumN/AAug 27, 2026
CVE-2026-81753: flowintel: Affected versions of Flowintel render Mermaid blocks contained in stored case notes without sufficiently neutralizing…N/A5.1 MediumN/AAug 27, 2026
CVE-2026-81743: flowintel: Affected versions of Flowintel allow the LOG_FILE configuration value to be modified through system settings without…N/A7.5 HighN/AAug 27, 2026
CVE-2026-81677: TOOOLS iSquad: The ‘/ws/apiprensa/getVideo’ endpoint is vulnerable to SQL injection due to improper validation of the GET parameter…N/A8.8 HighN/AAug 27, 2026
CVE-2026-81676: TOOOLS iSquad: A vulnerability in the endpoint ‘/ws/apitribuna/ultimosVideos’ where the `limit_videos` parameter is directly…N/A8.8 HighN/AAug 27, 2026
CVE-2026-81675: TOOOLS iSquad: The endpoint ‘/ws/apiprensa/getVideoUltimasSeccion’ contains an SQL injection vulnerability in the id_seccion parameterN/A9.3 CriticalN/AAug 27, 2026
CVE-2026-81674: TOOOLS iSquad: The endpoint ‘/ws/apiprensa/getVideoNextPrev’ is vulnerable to SQL injection via the id_ambito parameterN/A9.3 CriticalN/AAug 27, 2026
CVE-2026-81673: TOOOLS iSquad: The ‘/ws/apitribuna/setVisita’ endpoint is vulnerable to SQL injection through the id_video and id_ambito parametersN/A9.3 CriticalN/AAug 27, 2026
CVE-2026-81672: TOOOLS iSquad: SQL injection vulnerability in the ‘/ws/apiprensa/getVideoSubcanal’ endpoint due to improper handling of the id_video…N/A9.3 CriticalN/AAug 27, 2026
CVE-2026-81668: Red Hat Red Hat Satellite 6: A flaw was found in Katello where the Content View Filter Rules API does not properly enforce authorization on the…5.4 MediumN/AN/AAug 27, 2026
CVE-2026-81662: flowintel: Affected versions of Flowintel improperly trust configuration keys supplied to the alerts settings update endpointN/A8.6 HighN/AAug 27, 2026
CVE-2026-81659: flowintel: Affected versions of Flowintel allow attacker-controlled note content to be processed by Pandoc and XeLaTeX during PDF…N/A7.1 HighN/AAug 27, 2026
CVE-2026-81658: Red Hat Red Hat Satellite 6: A flaw was found in Foreman6.5 MediumN/AN/AAug 27, 2026
CVE-2026-81562: AlexGladkov claude-in-mobile: A security flaw has been discovered in AlexGladkov claude-in-mobile 3.10.25.3 Medium1.9 LowN/AAug 27, 2026
CVE-2026-81560: blackms aistack: A vulnerability was identified in blackms aistack up to 1.6.15.3 Medium5.5 MediumN/AAug 27, 2026
CVE-2026-74233: Zbtlink, Unknown: Zbtlink WE1326, WE357, WE5926, WE5926-WD, WE826-Q, WE826-T2, WE826-WD, WG108, and WG3526 firmware 19.1101, Zbtlink…9.8 Critical9.3 CriticalN/AAug 27, 2026
CVE-2026-74232: Zbtlink, MoreQuick, Unknown: Zbtlink L3_V2_8 firmware 3.0.0.4.528, Zbtlink WE826-T2 firmware 19.1101, Zbtlink ZBT-7628 firmware 1.0.0.2.007, Zbtlink…9.8 Critical9.3 CriticalN/AAug 27, 2026
CVE-2026-66155: Siemens: A vulnerability has been identified in Element maps-ng V47 (All versions < V47.12.3), Element maps-ng V48 (All versions…7.6 High7.0 HighN/AAug 27, 2026
CVE-2026-5218: Softtr Informatics Technology Trading Limited Company E-Commerce Pack: Improper neutralization of Script-Related HTML tags in a web page (basic XSS) vulnerability in Softtr Informatics…4.3 MediumN/AN/AAug 27, 2026
CVE-2026-17562: Summit Security Systems AdisyonPro: Authorization bypass through User-Controlled key vulnerability in Summit Security Systems AdisyonPro allows Accessing…6.5 MediumN/AN/AAug 27, 2026
CVE-2026-81625: Greenbone, greenbone: A remote attacker with user privileges may use a malicious or compromised NASL vulnerability test (VT) on the affected…8.8 High8.7 HighN/AAug 27, 2026
CVE-2026-81581: wibu-systems-ag wibukey: Improper validation of memory boundaries in WibuKey64.sys of WibuKey up to 6.70 for Windows can be exploited by an…8.8 HighN/AN/AAug 27, 2026
CVE-2026-81579: wibu-systems-ag wibukey: In WibuKey for Windows before version 6.71, an untrusted pointer dereference in the WibuKey2_64.sys kernel driver for…8.8 HighN/AN/AAug 27, 2026
CVE-2026-81576: wibu-systems-ag codemeter-runtime: If configured as a server, CodeMeter Runtime before versions 8.41a and 9.10 issues handles per connection and relies on…7.7 HighN/AN/AAug 27, 2026
CVE-2026-81575: wibu-systems-ag codemeter-runtime: If configured as a server, CodeMeter Runtime before versions 8.41a and 9.10 accepts requests with opcode 0x5e, which…7.5 HighN/AN/AAug 27, 2026

Rows per page

1-25 of 565617

Read the original on rapid7.com ↗