Monitor vulnerabilities that affect your stack. Sign up free to get alerts when software you use is affected.

CVE Vulnerabilities - 27 August 2026

RSS

534 vulnerabilities published on 27 August 2026

Severity:
ServiceNow AI platform could let strangers change data
CVE-2026-74820
The AI feature in ServiceNow could let an unauthenticated user run database commands and view or alter information they shouldn't. ServiceNow has released a fix for both cloud and on‑premise versions....
10.0
ServiceNow AI platform could let strangers run code
CVE-2026-18885
A weakness in ServiceNow's AI platform could have allowed someone without an account to run their own commands on the system and view or change data. ServiceNow has released a fix to all hosted and se...
10.0
ServiceNow AI platform allows unauthorized data changes
CVE-2026-18886
The AI features in ServiceNow could let someone without a login alter or add data they shouldn’t, potentially gaining higher privileges. ServiceNow has released a security update for both cloud and on...
10.0
ServiceNow Now Platform could let strangers run code
CVE-2026-6876
A flaw in ServiceNow's Now Platform could let an unauthenticated user run their own code inside the system, potentially gaining more access than intended. ServiceNow has already released a security up...
10.0
UI‑TARS desktop servers let anyone run commands
CVE-2026-81735
The UI‑TARS desktop application starts a server that listens on all network interfaces and does not require a password. Because of this, anyone who can reach the server’s port can tell it to execute a...
10.0
ToolUniverse lets anyone run unsafe Python code
CVE-2026-81096 GHSA-pxwq-22vf-87fm
ToolUniverse runs user‑provided Python scripts in a sandbox that can be broken out of, and the service is reachable without any login. An attacker could use this to execute commands on the server and ...
9.3
Ebyte gateway web interface token can be stolen and reused
CVE-2026-76179
Ebyte gateway devices store their web‑management login tokens in a way that can be seen by someone who can view a user’s session data. If an attacker captures that token, they can pretend to be the lo...
9.3
Ebyte device can be logged into without a password
CVE-2026-71187
The Ebyte hardware’s login process can be copied, allowing anyone to send a valid login request and gain administrator rights. This could let attackers change settings, view data, or control the devic...
9.3
Ebyte device web interface allows unauthenticated changes
CVE-2026-73125
The web management page of Ebyte devices does not always require a login before showing or allowing changes to important settings. This means someone on the network could view configuration details, a...
9.3
Spring MVC can corrupt data in server‑sent event streams
CVE-2026-59313 DEBIAN-CVE-2026-59313
Web applications built with Spring MVC’s functional framework may corrupt the data sent to browsers when using Server‑Sent Events. This can cause incomplete or garbled updates for users watching live ...
9.8
Veno File Manager 4.4.9 lets unauthorized users change admin settings
CVE-2026-37072
The Veno File Manager version 4.4.9 does not properly check who can access the admin-head-updates.php page, so someone without proper rights could modify administrative settings. This could let attack...
9.8
Veno File Manager 4.4.9 can reset admin password
CVE-2026-37071
The file‑manager software version 4.4.9 lets a user who can rename files change the program’s configuration file. By doing this, the system automatically rebuilds its settings and restores the super‑a...
9.8
BerriAI litellm up to 1.82.4 lets attackers run commands
CVE-2026-37004
The litellm library used by BerriAI, in versions up to 1.82.4, can be tricked into running any operating‑system command if someone sends a specially crafted request to its /prompts/test page. This can...
9.8
Tutor LMS plugin lets anyone run code on your site
CVE-2026-19092
The Tutor LMS add‑on for WordPress (versions before 4.0.6) lets data sent from a web request replace internal variables while the plugin builds pages. This means a stranger can cause the server to run...
9.8
openssl_encrypt before 1.4.9 fails to re-derive and validate fingerprints when loading identities from identity.json, al...
CVE-2026-81702
9.3
OpenSSL Encrypt before 1.4.9 lets malicious plugins run
CVE-2026-81701 GHSA-wxx9-p55f-wm34
Versions of OpenSSL Encrypt older than 1.4.9 do not properly check plugins, so an attacker could add a fake plugin to the standard plugin folders and have it executed. This could let the attacker run ...
9.3
OpenSSL Encrypt before 1.4.9 may run malicious plugins
CVE-2026-81700 GHSA-x38r-8wf3-q9hq
Versions of OpenSSL Encrypt earlier than 1.4.9 can be tricked into accepting a digital signature that should be rejected because the signing key has been revoked or has expired. This lets an attacker ...
9.3
openssl_encrypt <1.4.9 can fake fingerprint display
CVE-2026-81707 GHSA-qjr2-x6mr-8xgf
Versions of the OpenSSL encryption library older than 1.4.9 that process identity documents may let a malicious email insert special control codes. Those codes can change what your terminal shows, mak...
9.9
Zbtlink router firmware lets attacker run commands
CVE-2026-74233
Several Zbtlink router models and some other devices run a background service that can be tricked by an unauthenticated network packet. An attacker who can reach the device on UDP port 9992 can cause ...
9.3
Multiple Zbtlink and MoreQuick devices allow remote code execution
CVE-2026-74232
Several firmware versions for Zbtlink, MoreQuick, AP, HK and MAP devices contain code that opens an unauthenticated UDP channel to a fixed server. Anyone on the same network can take control, run comm...
9.3
WordPress Hash Form plugin up to 1.4.1 can let attackers run code
CVE-2026-78292
The Hash Form add‑on for WordPress, versions 1.4.1 and earlier, can be tricked into executing unwanted commands without any login. This could allow a remote person to take control of your site or stea...
9.8
WordPress Geo Controller plugin can let attackers run code
CVE-2026-78286
The Geo Controller add‑on for WordPress (versions up to 8.9.8) lets anyone on the internet send specially crafted data that can make the server execute whatever code they want. This could let an attac...
9.8
WordPress ACPT Pro plugin can let attackers gain admin rights
CVE-2026-32566
The ACPT Pro custom post types plugin for WordPress, up to version 2.0.63, can be tricked by anyone on the internet to give themselves higher privileges on your site. This means an attacker could take...
9.8
Spring Framework may let oversized XML bypass memory limit
CVE-2026-47891 UBUNTU-CVE-2026-47891
Web applications built with Spring that use the Aalto XML parser can accept XML data larger than the intended in‑memory size limit. This can cause the program to consume more memory than planned, pote...
9.8
Spring Framework SSE streams can become corrupted when rendering fragments
CVE-2026-47890 UBUNTU-CVE-2026-47890
If your web application uses Spring Framework version 6.2.0 through 6.2.19 or 7.0.0 through 7.0.8 and relies on Server‑Sent Events to push updates, the data stream may get mixed up when view fragments...
9.8