[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"cve-CVE-2026-11944":3,"landing-trending":57,"landing-articles":136},{"id":4,"cve_id":5,"summary":6,"published":7,"cvss_data":8,"is_remote":24,"cwes":25,"cpes":27,"technologies":32,"references":37,"score":40,"epss_score":41,"epss_percentile":42,"is_kev":43,"cisa_kev_date_added":44,"cisa_kev_due_date":44,"cisa_ssvc":45,"exploits":55},365446,"CVE-2026-11944","openSIS Classic 9.3 contains an authenticated path traversal vulnerability in the legacy messaging sent-mail attachment download functionality that allows an authenticated attacker to read arbitrary files on the server via crafted path traversal sequences.","2026-07-14T16:16:00Z",{"cvss_v3.1":9,"cvss_v4.0":19},{"scope":10,"version":11,"baseScore":12,"attackVector":13,"baseSeverity":14,"vectorString":15,"integrityImpact":16,"userInteraction":16,"attackComplexity":17,"availabilityImpact":16,"privilegesRequired":17,"confidentialityImpact":18},"UNCHANGED","3.1",6.5,"NETWORK","MEDIUM","CVSS:3.1\u002FAV:N\u002FAC:L\u002FPR:L\u002FUI:N\u002FS:U\u002FC:H\u002FI:N\u002FA:N","NONE","LOW","HIGH",{"Safety":20,"version":21,"Recovery":20,"baseScore":22,"Automatable":20,"attackVector":13,"baseSeverity":14,"valueDensity":20,"vectorString":23,"exploitMaturity":20,"providerUrgency":20,"userInteraction":16,"attackComplexity":17,"attackRequirements":16,"privilegesRequired":17,"subIntegrityImpact":16,"vulnIntegrityImpact":16,"integrityRequirement":20,"modifiedAttackVector":20,"subAvailabilityImpact":16,"vulnAvailabilityImpact":16,"availabilityRequirement":20,"modifiedUserInteraction":20,"modifiedAttackComplexity":20,"subConfidentialityImpact":16,"vulnConfidentialityImpact":17,"confidentialityRequirement":20,"modifiedAttackRequirements":20,"modifiedPrivilegesRequired":20,"modifiedSubIntegrityImpact":20,"modifiedVulnIntegrityImpact":20,"vulnerabilityResponseEffort":20,"modifiedSubAvailabilityImpact":20,"modifiedVulnAvailabilityImpact":20,"modifiedSubConfidentialityImpact":20,"modifiedVulnConfidentialityImpact":20},"NOT_DEFINED","4.0",5.3,"CVSS:4.0\u002FAV:N\u002FAC:L\u002FAT:N\u002FPR:L\u002FUI:N\u002FVC:L\u002FVI:N\u002FVA:N\u002FSC:N\u002FSI:N\u002FSA:N\u002FE:X\u002FCR:X\u002FIR:X\u002FAR:X\u002FMAV:X\u002FMAC:X\u002FMAT:X\u002FMPR:X\u002FMUI:X\u002FMVC:X\u002FMVI:X\u002FMVA:X\u002FMSC:X\u002FMSI:X\u002FMSA:X\u002FS:X\u002FAU:X\u002FR:X\u002FV:X\u002FRE:X\u002FU:X",true,[26],"CWE-22",[28,29,30,31],"cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*","cpe:2.3:a:os4ed:opensis:9.3:*:*:*:community:*:*:*","cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*","cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*",[33,34,35,36],"Microsoft Windows","Linux Linux Kernel","Os4Ed Opensis","Apple Macos",[38,39],"https:\u002F\u002Ffluidattacks.com\u002Fes\u002Fadvisories\u002Ftoto","https:\u002F\u002Fgithub.com\u002FOS4ED\u002FopenSIS-Classic",0.62,0.00481,0.40597,false,null,{"timestamp":46,"automatable":47,"tech_impact":48,"exploitation":49,"cisa_decision":50,"cisa_remediation_timeline":54},"2026-07-14T15:58:20.434887Z","no","partial","poc",{"vector":51,"decision":52,"priority":53},"CISAv1\u002FE:P\u002FA:N\u002FT:P\u002FM:H\u002F2026-09-20T08:04:20.377742\u002F","track_star","medium","60D",[56],{"link":38},{"count":58,"next":59,"previous":44,"results":60},190,"http:\u002F\u002Fweb:8606\u002Fapi\u002Ftrending_attacks\u002F?page=2&sorted_by=-published_at",[61,70,73,82,90,98,106,114,121,128],{"id":62,"title":63,"summary":64,"published_at":65,"severity":66,"vendor":67,"products":68},188,"Zimbra SNMP - Unauthenticated RCE via SMTP","Zimbra SNMP is an integrated component of Zimbra Collaboration Suite designed to generate and transmit server performance data, health metrics, and alerts to centralized network monitoring systems.\r\n\r\nCVE-2026-73570\r\n\r\nCritical remote code execution vulnerability exists in Zimbra Collaboration versions prior to 10.1.20 due to improper sanitization of untrusted input within the platform's SNMP notification processing system. When the optional zimbra-snmp package is installed and SNMP notifications are enabled, an unauthenticated remote attacker can transmit specially crafted SMTP requests to the mail server. Because the incoming notification payloads are processed without sufficient input validation, the malicious data escapes its context and is injected directly into operating system commands. This flaw allows the attacker to achieve arbitrary code execution on the underlying server with the full system privileges of the zimbra user, requiring no credentials or user interaction.","2026-09-18T08:48:52.390988Z",4,"Synacor",[69],"Zimbra SNMP",{"id":58,"title":63,"summary":64,"published_at":65,"severity":66,"vendor":67,"products":71},[72],"Zimbra Collaboration Suite (ZCS)",{"id":74,"title":75,"summary":76,"published_at":77,"severity":66,"vendor":78,"products":79},183,"Cisco Identity Services Engine - Unauthenticated Admin Access & Unauthenticated API Auth Bypass","Cisco Identity Services Engine (ISE) is a network access control platform that enforces security policies by validating user and device identities. Its companion component, Cisco ISE Passive Identity Connector (ISE-PIC), gathers user identity information passively from external authentication servers (like Active Directory) and shares that data with security subscribers. Both technologies work together to control network access dynamically and maintain complete infrastructure visibility.\r\n\r\nCVE-2026-76460\r\n\r\nThis vulnerability represents a critical authentication bypass flaw within the REST API endpoint of Cisco ISE. Assigned the maximum severity rating of CVSS 10.0, it allows remote, unauthenticated attackers to completely circumvent security controls and gain unauthorized access to the system. This security loophole has been identified as a zero-day vulnerability and is actively being exploited in the wild, making immediate patching a vital priority for administrators.\r\n\r\nCVE-2026-76423\r\n\r\nParallel to the authentication flaw, this critical vulnerability involves an authorization bypass defect residing in the Cisco ISE REST API framework. Also rated at a maximum CVSS 10.0, the bug enables a remote, non-authenticated threat actor to manipulate API requests to bypass administrative validation mechanisms. Successfully exploiting this flaw grants the attacker full administrative privileges over the affected deployment, compromising the entire network access control infrastructure.","2026-09-17T08:39:13.162649Z","Cisco",[80,81],"Cisco Identity Services Engine (ISE)","Cisco ISE Passive Identity Connector (ISE-PIC)",{"id":83,"title":84,"summary":85,"published_at":86,"severity":87,"vendor":88,"products":89},184,"Multiple vulnerability on n8n : Credential Decryption via Missing Ownership Check & NoSQL Injection (Cross-Session Data Disclosure) & Session Token Leak via SSRF-like Resolver","n8n is an open-source source-available node-based workflow automation and integration platform written in TypeScript and Node.js. Specifically, the flaws target its underlying AI agent orchestrator, the NoSQL MongoDB integration layer used for conversational memory state management, and the system's core dynamic OAuth2\u002FAPI credential synchronization endpoint architecture.\r\n\r\nGHSA-9rhv-fhr8-7q5r\r\n\r\nThis vulnerability allows a workflow editor to decrypt and access instance credentials that they do not own. By leveraging the built-in inline agent node-tool introspection feature, an authenticated attacker can bypass intended project or organization boundaries. Since the mechanism lacks proper ownership and permission verification, any shared or accessible workspace configuration can be exploited to expose sensitive credentials across the entire instance.\r\n\r\nGHSA-w24g-6454-7w7f\r\n\r\nThis flaw is a NoSQL injection vulnerability within the MongoDB Chat Memory component. It allows unauthenticated remote attackers to manipulate database queries, leading to cross-session data disclosure. Consequently, an attacker can extract and view confidential chat history records belonging to other users or separate chat sessions without needing valid credentials.\r\n\r\nGHSA-rx55-8qhx-4hwx\r\n\r\nThis high-severity flaw stems from an insecure dynamic credentials authorization endpoint. Due to a lack of proper target validation, the endpoint leaks active session tokens to an external, attacker-controlled resolver or host. An attacker can exploit this behavior to intercept valid access tokens and gain unauthorized control over integrated services or user sessions.","2026-09-17T07:54:37.961461Z",3,"n8n",[88],{"id":91,"title":92,"summary":93,"published_at":94,"severity":66,"vendor":95,"products":96},182,"Oracle WebLogic Server - 3x Unauthenticated T3\u002FIIOP RCE & Unauthenticated RCE (Full Takeover)","Oracle WebLogic Server is a Java EE application server used to deploy, run, and manage enterprise-level web applications and distributed services.\r\n\r\nCVE-2026-70748\r\n\r\nThis critical vulnerability affects the Core component of Oracle WebLogic Server. It is an easily exploitable flaw with a CVSS score of 9.8 that allows a remote, unauthenticated attacker with network access via the T3 or IIOP protocols to completely compromise and take over the server.\r\n\r\nCVE-2026-70757\r\n\r\nIdentical in its operational metrics to the previous flaw, this vulnerability also resides in the Core sub-component of the middleware platform. Rated 9.8 on the CVSS scale, it enables unauthenticated remote code execution and server takeover over network infrastructures by manipulating the T3 or IIOP transmission channels.\r\n\r\nCVE-2026-70756\r\n\r\nAlso categorized within the Core infrastructure of WebLogic Server, this security loophole scores a critical 9.8 CVSS rating. An external actor requires no privileges or user interaction to exploit this weakness over standard T3 or IIOP protocols, successfully leading to a full host takeover.\r\n\r\nCVE-2026-83021\r\n\r\nDiffering slightly from the others, this flaw targets the Web Container component of WebLogic Server rather than the Core framework. It holds a maximum CVSS score of 10.0 because it can be exploited remotely via the ubiquitous HTTP protocol, allowing unauthenticated attackers to execute unauthorized commands, break boundaries, and potentially cascade the compromise onto interconnected systems (Scope Change).","2026-09-16T12:28:42.579930Z","Oracle",[97],"Oracle WebLogic Server",{"id":99,"title":100,"summary":101,"published_at":102,"severity":66,"vendor":103,"products":104},181,"WSO2 API Manager - Authentication Bypass via JWT Signature Flaw","WSO2 API Manager is an open-source platform designed for creating, publishing, managing, and monitoring APIs throughout their entire lifecycle, enabling organizations to secure and scale their digital services efficiently.\r\n\r\nCVE-2026-5430\r\n\r\nCritical authentication bypass vulnerability exists in WSO2 API Manager due to an improper signature verification flaw during JSON Web Token (JWT) validation. The system fails to correctly validate the signing algorithm of incoming tokens, allowing it to accept tokens that use unexpected or unsupported cryptographic algorithms. A remote, unauthenticated attacker can exploit this weakness by crafting malicious, self-signed JWTs, thereby bypassing authentication mechanisms and gaining unauthorized access to protected API resources or management consoles with administrative privileges.","2026-09-16T08:40:37.872538Z","WSO2",[105],"WSO2 API Manager",{"id":107,"title":108,"summary":109,"published_at":110,"severity":87,"vendor":111,"products":112},180,"Multiple vulnerability on VMware Aria Operations : Command Injection Vulnerability & Stored Cross-Site Scripting (XSS)","VMware Aria Operations (formerly known as vRealize Operations or vROps) is an autonomous IT operations management platform designed for private, hybrid, and multi-cloud environments.\r\n\r\nCVE-2026-22719\r\n\r\nHigh-severity Command Injection Vulnerability (CVSS 8.1) caused by a failure to properly sanitize shell metacharacters in the management interface during an active, support-assisted product migration. An unauthenticated attacker with network access can exploit this flaw by injecting malicious strings into specific configuration parameters, resulting in full Remote Code Execution (RCE) and potential system takeover. Due to active real-world exploitation, it has been officially added to the CISA Known Exploited Vulnerabilities (KEV) Catalog.\r\n\r\nCVE-2026-22720\r\n\r\nStored Cross-Site Scripting (XSS) vulnerability (CVSS 8.0) that stems from improper validation of user-supplied data within the platform's benchmark configuration tools. An authenticated attacker with privileges to create custom benchmarks can inject a malicious JavaScript payload into the system. When a high-privilege administrator later views the affected page, the script executes automatically within their browser session, allowing the attacker to hijack the session and perform unauthorized administrative actions.","2026-09-15T12:47:37.969503Z","Broadcom",[113],"VMware Aria Operations",{"id":115,"title":116,"summary":117,"published_at":118,"severity":66,"vendor":78,"products":119},178,"Mutilples vulnerabilities in Cisco Secure Email Gateway","Multiples vulnerabilities are affecting Cisco Secure Email Gateway:\r\n\r\n- CVE-2026-76443: Improper Neutralization \r\n- CVE-2026-20353:  Unauthenticated Remote Compromise\r\n- CVE-2026-76440: Unauthenticated Path Traversal\r\n- CVE-2026-76441: Improper Access Control (Unauth)\r\n- CVE-2026-76461: Unauthenticated SQLi to Root RCE","2026-09-15T08:16:09.986991Z",[120],"Secure Email Gateway",{"id":122,"title":123,"summary":124,"published_at":118,"severity":66,"vendor":78,"products":125},179,"Mutilples vulnerabilities on Cisco : Improper Neutralization & Unauthenticated Remote Compromise & Unauthenticated Path Traversal & Improper Access Control (Unauth) & Unauthenticated SQLi to Root RCE","Cisco Secure Email Gateway (SEG) and Secure Email and Web Manager (SEWM) are enterprise security appliances used to filter incoming email traffic for threats, manage encryption, and oversee centralized security policies across an organization's network infrastructure.\r\n\r\nCVE-2026-76443: Improper Neutralization\r\n\r\nThis vulnerability occurs because the system fails to correctly clean up or filter data supplied by users or external emails before processing it. A remote attacker can exploit this flaw by sending specially crafted inputs, allowing them to execute unauthorized commands or inject malicious database statements into the appliance.\r\n\r\nCVE-2026-20353: Unauthenticated Remote Compromise\r\n\r\nThis critical flaw involves errors in how the appliance handles and translates serialized data during standard operations. Because it requires no login credentials, a remote attacker can exploit the system's data-handling process to exhaust its resources or trick it into running unauthorized code, completely compromising the device.\r\n\r\nCVE-2026-76440: Unauthenticated Path Traversal\r\n\r\nThis security gap allows an outsider to bypass standard directory boundaries by manipulating file path references in network requests. Without needing to log in, an attacker can exploit this weakness to break out of restricted folder structures and access sensitive files on the system's storage.\r\n\r\nCVE-2026-76441: Improper Access Control (Unauth)\r\n\r\nThis flaw stems from a failure in the software's gatekeeping mechanisms, which are supposed to restrict actions to authorized users only. Because these restrictions are poorly enforced, an unauthenticated remote attacker can trick the system into granting them administrative rights and performing unauthorized actions.\r\n\r\nCVE-2026-76461: Unauthenticated SQLi to Root RCE\r\n\r\nThis is a highly severe vulnerability caused by poor data validation when the appliance parses incoming email messages. A remote attacker can send an email containing malicious database commands that, when processed, allow them to execute arbitrary system code with full root-level permissions over the entire host operating system.",[120,126,127],"Cisco Secure Email","Web Manager (SEWM)",{"id":129,"title":130,"summary":131,"published_at":132,"severity":87,"vendor":133,"products":134},175,"Vulnerability chain on JFrog Artifactory : Anonymous Token Leak to Unauthenticated Caller & privilege escalation attack","JFrog Artifactory is a universal repository manager that acts as a secure, centralized warehouse for storing and managing all your compiled software components, binaries, and Docker images. It connects directly with your CI\u002FCD pipelines to cache external dependencies, ensure build reliability, and streamline how applications are securely deployed.\r\n\r\nCVE-2026-42018\r\n\r\nHigh-severity improper authentication vulnerability in JFrog Artifactory where the system incorrectly generates and returns an internal anonymous-user token to unauthenticated remote callers, even when anonymous access has been explicitly disabled. This flaw allows an attacker without any login credentials to obtain valid initial access to the repository manager, potentially exposing sensitive data, metadata, and internal resources that are mapped to the default internal anonymous identity.\r\n\r\nCVE-2026-42016\r\n\r\nHigh-severity incorrect authorization and privilege escalation vulnerability affecting self-hosted versions of JFrog Artifactory prior to version 7.133.11. The security flaw stems from a faulty validation mechanism where Artifactory verifies a token's cryptographic signature and issuer, but fails to check and enforce the token’s actual authorized scope. Consequently, an attacker possessing a low-privilege token can exploit this oversight to swap or upgrade it for a token with administrative scope, granting them full control over the target application server.","2026-09-14T09:25:33.790690Z","JFrog",[135],"JFrog Artifactory",{"count":137,"next":138,"previous":44,"results":139},29,"http:\u002F\u002Fweb:8606\u002Fapi\u002Farticles\u002F?page=2&sorted_by=-published_at",[140,147,155,162,169,177,182,189,196,203],{"id":137,"title":141,"summary":142,"published_at":143,"type":144,"link":145,"image_url":146},"Manage External Security Across All Your Entities","Centralize the management of entities, users and external security resources while maintaining strict data isolation with Patrowl.","2026-09-15T00:00:00Z","security tips","https:\u002F\u002Fpatrowl.io\u002Fen\u002Fblog\u002Fmulti-entity-external-security-how-structure-governance-group-level","https:\u002F\u002Fpatrowl.io\u002Fmedia\u002Fsite\u002F8b2c0cc5eb-1789551467\u002Fvisu_1_multi_tenancy_dark_1x.webp",{"id":148,"title":149,"summary":150,"published_at":151,"type":152,"link":153,"image_url":154},28,"Will AI Become the Next Hacker? Bruce Schneier Answers at DEF CON 34","Tax law, finance, legislation: Bruce Schneier shows how AI could hack human rule systems just as easily as it hacks software.","2026-09-14T00:00:00Z","hacks","https:\u002F\u002Fpatrowl.io\u002Fen\u002Fblog\u002Fbruce-schneier-def-con-34","https:\u002F\u002Fpatrowl.io\u002Fmedia\u002Fsite\u002F5c616d9db4-1789462598\u002Fai-hacker.en.png",{"id":156,"title":157,"summary":158,"published_at":159,"type":144,"link":160,"image_url":161},27,"Exposure Management: definition, stakes, and how it works","Vulnerabilities, misconfigurations, poorly managed identities: understand what Exposure Management is and why it matters in 2026.","2026-09-10T00:00:00Z","https:\u002F\u002Fpatrowl.io\u002Fen\u002Fblog\u002Fdefinition-exposure-management","https:\u002F\u002Fpatrowl.io\u002Fmedia\u002Fsite\u002F06170638a9-1789050834\u002Fexposure.management.definition.en.png",{"id":163,"title":164,"summary":165,"published_at":166,"type":152,"link":167,"image_url":168},26,"DGFiP Cyberattack 2026: Inside the Attacker","Two distinct attacks hit France","2026-08-17T00:00:00Z","https:\u002F\u002Fpatrowl.io\u002Fen\u002Fblog\u002Fdgfip-cyberattack-2026-inside-attacker-mind","https:\u002F\u002Fpatrowl.io\u002Fmedia\u002Fsite\u002Fdc38d33696-1787055371\u002Fdgfip-2026.png",{"id":170,"title":171,"summary":172,"published_at":173,"type":174,"link":175,"image_url":176},25,"CVE-2026-64638: XSS2Shell, a WordPress Login Vulnerability","Pre-auth XSS on wp-login.php, patched August 6. What is actually exploitable, and how to read it in your Patrowl report.","2026-08-10T00:00:00Z","cve","https:\u002F\u002Fpatrowl.io\u002Fen\u002Fblog\u002Fxss2shell-critical-wordpress-login-vulnerability-2026","https:\u002F\u002Fpatrowl.io\u002Fmedia\u002Fsite\u002F904e61748b-1786369212\u002Fxss2shell.png",{"id":178,"title":179,"summary":179,"published_at":173,"type":174,"link":180,"image_url":181},24,"CVE-2026-64638 : XSS2Shell, faille du login WordPress","https:\u002F\u002Fpatrowl.io\u002Fen\u002Fblog\u002Fcve-2026-64638-xss2shell-faille-login-wordpress","",{"id":183,"title":184,"summary":185,"published_at":186,"type":174,"link":187,"image_url":188},23,"How Agentic AI Hunts Down CVEs Before Attackers Do","38 vulnerability sources monitored around the clock, pentester-validated proof of exploitability, an alert within hours. See how it works.","2026-08-05T00:00:00Z","https:\u002F\u002Fpatrowl.io\u002Fen\u002Fblog\u002Fproactive-threat-hunting-agentic-ai-cve","https:\u002F\u002Fpatrowl.io\u002Fmedia\u002Fsite\u002F804988ce7b-1785930160\u002Fproactive-threat-hunting-how-agentic-ai-tracks-cves.png",{"id":190,"title":191,"summary":192,"published_at":193,"type":152,"link":194,"image_url":195},22,"AI Agent Incident: OpenAI HuggingFace — Risks and Lessons","An autonomous AI agent escaped its sandbox via a JFrog Artifactory zero-day, compromised HuggingFace via privilege escalation and stolen credentials. Reconstructed timeline and security lessons.","2026-07-31T00:00:00Z","https:\u002F\u002Fpatrowl.io\u002Fen\u002Fblog\u002Fai-agent-incident-openai-huggingface-risks","[Image URL from Kirby]",{"id":197,"title":198,"summary":199,"published_at":200,"type":144,"link":201,"image_url":202},21,"SaaS Under Watch: What Your SDLC Doesn","Your pipeline is green. Your real exposure may have changed without you knowing it. The complete guide for software vendors.","2026-07-29T00:00:00Z","https:\u002F\u002Fpatrowl.io\u002Fen\u002Fblog\u002Fsecuring-saas-application-software-vendor","https:\u002F\u002Fpatrowl.io\u002Fmedia\u002Fsite\u002F20d6ec0cd0-1785331401\u002Fapplication-security.png",{"id":204,"title":205,"summary":206,"published_at":207,"type":174,"link":208,"image_url":209},18,"Wp2shell: WordPress Security Flaws","Deep dive into wp2shell vulnerabilities (CVE-2026-63030 & CVE-2026-60137) in WordPress 7.0.2. Detection guide and fixes to secure your sites.","2026-07-20T00:00:00Z","https:\u002F\u002Fpatrowl.io\u002Fen\u002Fblog\u002Fwp2shell-critical-wordpress-vulnerabilities","https:\u002F\u002Fpatrowl.io\u002Fmedia\u002Fsite\u002F97aa11e60b-1784565821\u002Fminiature-wp2shell.png"]