Monitor vulnerabilities that affect your stack.
Sign up free to get alerts when software you use is affected.
CVE Vulnerabilities - 28 August 2026
RSS838 vulnerabilities published on 28 August 2026
Severity:
Kubeflow Pipelines before 2.17 allows unauthenticated internal request forwarding
CVE-2026-54745
The web interface of Kubeflow Pipelines versions earlier than 2.17 can be tricked into sending requests to any internal address without checking the caller's identity. This could let an attacker read ...
10.0
GiveWP may let attackers run code via crafted data
CVE-2026-82222
The GiveWP donation plugin for WordPress can be fooled by specially crafted information, allowing an attacker to insert malicious instructions that run on your site. This could give them control over ...
10.0
IBM Langflow lets logged-in user run OS commands
CVE-2026-19295
Versions 1.0.0 through 1.11.1 of IBM Langflow allow someone who has a regular account to make the software run any command on the server. This can let an attacker take control of the machine that host...
9.9
IBM Application Runtime Expert for i lets attacker gain admin
CVE-2026-18527
The IBM Application Runtime Expert for i includes a graphical interface that can be tricked by someone on the network, even without logging in. That attacker could act as another user and obtain highe...
9.9
Pimcore import lets authenticated users execute code
CVE-2026-55634
GHSA-9x44-4gxf-8c25
If you use Pimcore versions older than the latest releases, a user who can log in and has permission to work with objects can trick the system into creating PHP code inside its data‑object classes. Th...
9.9
Yamcs can run malicious code via crafted search patterns
CVE-2026-55565
GHSA-c64q-hj4j-375f
Older versions of the Yamcs mission control software could insert user‑provided search strings into Java code without proper escaping. An attacker could include a quote in the pattern to inject and ru...
9.9
free5GC can register fake network functions
GHSA-x8mj-6p3q-g5pp
CVE-2026-55068
Versions of free5GC up to 4.2.2 let anyone with access to the internal API add false network function records without proper validation. These bogus entries are stored and later returned to other comp...
9.9
IBM Langflow OSS could let attackers run code remotely
CVE-2026-19286
Versions 1.0.0 through 1.11.1 of IBM Langflow OSS do not properly restrict access to a public interface that allows one system to talk to another. This gap could let a remote attacker send specially c...
9.8
JFrog Artifactory can grant admin rights to unauthenticated users
CVE-2026-82329
The default setup of JFrog Artifactory lets anyone on the network log in without credentials and gain full administrative control. This could let attackers change settings, delete data, or install mal...
9.8
KEV
Argo Rollouts dashboard lets anyone change deployments
CVE-2026-82277
Versions of Argo Rollouts dashboard up to 1.10.0 listen on every network address and do not require a login or other checks. Because of this, anyone on the same network can start, stop, restart, or al...
9.3
TOTOLINK T6 router reveals admin username to anyone
CVE-2026-51645
The router’s web interface lets anyone send a specially crafted request and see the administrator’s login name. This makes it easier for attackers to plan further attacks against your network. Apply t...
9.8
TOTOLINK T6 router can be rebooted by anyone
CVE-2026-51611
The TOTOLINK T6 device running version 4.1.5cu.748 allows anyone on the network to send a special MQTT message that forces the router to restart. This can cause temporary loss of connectivity and inte...
9.8
Yamcs can be tricked into running commands on your server
CVE-2026-55559
GHSA-73mf-m39p-wpm9
Older versions of the Yamcs mission control system let a specially crafted web request add malicious configuration data. That data can cause Yamcs to start a process that runs any command it wants, us...
9.8
Redpanda allows anyone to control admin API on port 9644
CVE-2026-82266
Redpanda versions up to 26.2.2 open their administrative interface to the whole network and do not require a password by default. This means anyone who can reach the server can add or remove broker ac...
9.9
PaperCut MF/NG web interface lets unauthenticated users change settings
CVE-2026-81578
The web management console of PaperCut MF and PaperCut NG can be accessed without a login under certain conditions, allowing outsiders to alter system configurations. This could lead to unintended cha...
8.8
KEV
23blocks-OS ai-maestro lets attackers run commands
CVE-2026-37751
The ai‑maestro software version 0.24.17 contains a flaw in a function that handles session termination. An attacker who can send specially crafted data could cause the system to run any operating‑syst...
9.8
grpc-gateway 2.28.0 permits unauthorized method changes
CVE-2026-37236
The grpc-gateway library version 2.28.0 accepts the X-HTTP-Method-Override header without checking which methods are allowed. An attacker can send a POST request that changes the request method to any...
9.8
SOY CMS can run attacker code on server
CVE-2026-78032
The SOY CMS website software can be tricked into processing malicious data, which may cause it to run any code the attacker wants. This code would run with the same rights as the web server, potential...
9.3
WPMU DEV Dashboard plugin lets attackers log in as admin
CVE-2026-76581
WordPress sites that use the WPMU DEV Dashboard plugin version 5.0.1 or earlier are at risk. Because of a flaw in how the plugin validates login requests, someone without credentials can trick the sys...
9.8
Linux kernel qede driver could read beyond memory and crash
DEBIAN-CVE-2026-80609
CVE-2026-80609
UBUNTU-CVE-2026-80609
The qede network driver in the Linux kernel sometimes checks the size of a data list after it has already accessed that list, which can let it read memory it shouldn't. This could cause system instabi...
9.8
MediaTek Ethernet driver may crash Linux when polling is on
DEBIAN-CVE-2026-80694
CVE-2026-80694
UBUNTU-CVE-2026-80694
The built‑in Linux driver for MediaTek network cards can cause the system to stop working if a special network‑polling feature is turned on. The driver passes the wrong piece of information to a funct...
9.8
Linux kernel VXLAN can crash after routing change
DEBIAN-CVE-2026-80681
CVE-2026-80681
UBUNTU-CVE-2026-80681
A part of the Linux operating system that handles virtual network traffic (VXLAN) could accidentally use memory that has been released when the system changes the route for a packet. This can cause th...
9.8
Linux kernel IPVS synced connections can leave stale data
DEBIAN-CVE-2026-80714
CVE-2026-80714
UBUNTU-CVE-2026-80714
The Linux kernel’s IPVS component could copy a special one‑packet flag from a destination to synced connections that were created before the destination existed. This may cause old connection records ...
9.8
Linux kernel bridge handling may read wrong memory
DEBIAN-CVE-2026-80634
CVE-2026-80634
UBUNTU-CVE-2026-80634
A bug in the Linux kernel’s network bridge code could cause it to treat a zero counter as 255, leading to it read data from the wrong place in memory. This could happen only with an unusually malforme...
9.8
Linux kernel fq_codel can cause system crashes
DEBIAN-CVE-2026-80630
CVE-2026-80630
UBUNTU-CVE-2026-80630
The Linux operating system’s traffic‑shaping component (fq_codel) can mistakenly tell the system that a queue is empty when it still holds a packet. This can lead to the parent network class being tur...
9.8