freshcrate
Skin:/

freshcrate security

Latest high-impact CVEs, exploited vulnerability links, breach disclosures, and security news for agent operators.

Critical CVEs
6
High CVEs
34
CISA KEV
30
Breaches
20
News
30
Fetched: 8/28/2026, 6:58:50 PM • API: /api/security
Recent high CVEs
CVE-2026-60902high 72026-08-18

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Tuxedo). Supported versions that are affected are 8.61-8.63. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where PeopleSoft Enterprise PeopleTools executes to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can result in takeover

oracle peoplesoft enterprise peopletoolsCWE-284CWE-306
CVE-2026-60889high 7.52026-08-18

Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middleware (component: OUD Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via LDAP to compromise Oracle Unified Directory. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete acces

oracle unified directoryNVD-CWE-noinfoCWE-284
CVE-2026-60883high 7.22026-08-18

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: PeopleCode). Supported versions that are affected are 8.61-8.63. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can result in takeover of PeopleSoft Enterprise PeopleTools. CVSS 3.1 Bas

oracle peoplesoft enterprise peopletoolsCWE-284CWE-306
CVE-2026-60879high 8.82026-08-18

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Configuration Manager). Supported versions that are affected are 8.61-8.63. Easily exploitable vulnerability allows low privileged attacker with network access via SQL to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can result in takeover of PeopleSoft Enterprise PeopleTools. CVS

oracle peoplesoft enterprise peopletoolsCWE-284CWE-306
CVE-2026-60873high 7.22026-08-18

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Data Mover). Supported versions that are affected are 8.61-8.63. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where PeopleSoft Enterprise PeopleTools executes to compromise PeopleSoft Enterprise PeopleTools. Successful attacks require human interaction from a person

oracle peoplesoft enterprise peopletoolsCWE-284
CVE-2026-60861critical 9.62026-08-18

Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler). Supported versions that are affected are 14.1.2.0.0 and 12.2.1.4.0. Easily exploitable vulnerability allows low privileged attacker with network access via Oracle Net to compromise Service Delivery Platform. While the vulnerability is in Service Delivery Platform, attacks may significantly impact addi

oracle service delivery platformoracle fusion middlewareCWE-284
CVE-2026-60860high 8.72026-08-18

Vulnerability in the Service Delivery Platform product of Oracle Fusion Middleware (component: Messaging Enabler). Supported versions that are affected are 14.1.2.0.0 and 12.2.1.4.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via TCP to compromise Service Delivery Platform. While the vulnerability is in Service Delivery Platform, attacks may significantly impact addition

oracle service delivery platformoracle fusion middlewareCWE-284
CVE-2026-60858critical 9.82026-08-18

Vulnerability in the Oracle Hyperion Calculation Manager product of Oracle Hyperion (component: Security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Hyperion Calculation Manager. Successful attacks of this vulnerability can result in takeover of Oracle Hyperion Calculation Manager. CVSS

oracle hyperion calculation managerCWE-306
CVE-2026-60856high 7.42026-08-18

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Install and Packaging). Supported versions that are affected are 8.61-8.63. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modificati

oracle peoplesoft enterprise peopletoolsCWE-284CWE-306
CVE-2026-60850high 7.52026-08-18

Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middleware (component: OUD Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via LDAP to compromise Oracle Unified Directory. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete acces

oracle unified directoryNVD-CWE-noinfoCWE-284
CVE-2026-60849high 8.52026-08-18

Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middleware (component: OUD Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Difficult to exploit vulnerability allows low privileged attacker with network access via LDAP to compromise Oracle Unified Directory. While the vulnerability is in Oracle Unified Directory, attacks may significantly impact additional products

oracle unified directoryNVD-CWE-noinfoCWE-284
CVE-2026-60841high 8.52026-08-18

Vulnerability in the Oracle Unified Directory product of Oracle Fusion Middleware (component: OUD Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.1.0. Difficult to exploit vulnerability allows low privileged attacker with network access via LDAP to compromise Oracle Unified Directory. While the vulnerability is in Oracle Unified Directory, attacks may significantly impact additional products

oracle unified directoryNVD-CWE-noinfoCWE-284
CVE-2026-60831high 8.12026-08-18

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Integration Broker). Supported versions that are affected are 8.61-8.63. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can result in takeover of PeopleSoft Enterprise PeopleTools. CV

oracle peoplesoft enterprise peopletoolsCWE-284CWE-306
CVE-2026-60822high 7.82026-08-18

Vulnerability in the Oracle Enterprise Manager for Systems Infrastructure product of Oracle Enterprise Manager (component: Agent). Supported versions that are affected are 13.5 and 24.1. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle Enterprise Manager for Systems Infrastructure executes to compromise Oracle Enterprise Manager for Systems Infrastructure

CWE-284
CVE-2026-60821critical 9.82026-08-18

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Business Interlink). Supported versions that are affected are 8.61-8.63. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can result in takeover of PeopleSoft Enterprise PeopleTools. CVSS

oracle peoplesoft enterprise peopletoolsCWE-284CWE-306
CVE-2026-60820high 7.42026-08-18

Vulnerability in the Siebel CRM Integration product of Oracle Siebel CRM (component: REST). Supported versions that are affected are 17.0-26.6. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Siebel CRM Integration. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Siebe

oracle siebel crmCWE-1284
CVE-2026-60808high 7.52026-08-18

Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Email Marketing). Supported versions that are affected are 17.0-26.6. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Siebel Apps - Marketing executes to compromise Siebel Apps - Marketing. While the vulnerability is in Siebel Apps - Marketing, attacks may significantly impa

oracle siebel apps - marketingCWE-284
CVE-2026-60803high 7.42026-08-18

Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). Supported versions that are affected are 17.0-26.6. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Siebel Apps - Marketing. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or al

oracle siebel apps - marketingCWE-284
CVE-2026-60798high 8.52026-08-18

Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Migration). Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel CRM Deployment. While the vulnerability is in Siebel CRM Deployment, attacks may significantly impact additional products (scope change). Successful attack

oracle siebel crmCWE-284
CVE-2026-60797high 7.42026-08-18

Vulnerability in the Siebel CRM Integration product of Oracle Siebel CRM (component: REST). Supported versions that are affected are 17.0-26.6. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Siebel CRM Integration. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Sieb

oracle siebel crmCWE-284
CVE-2026-60796high 8.22026-08-18

Vulnerability in the Siebel CRM Integration product of Oracle Siebel CRM (component: REST). Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Siebel CRM Integration. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Siebel CRM Integration

oracle siebel crmCWE-284
CVE-2026-60792high 7.42026-08-18

Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Server Infrastructure). Supported versions that are affected are 17.0-26.6. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Siebel CRM Deployment. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical da

oracle siebel crmCWE-284
CVE-2026-60791high 8.12026-08-18

Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Application Interface). Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows unauthenticated attacker with access to the physical communication segment attached to the hardware where the Siebel CRM Deployment executes to compromise Siebel CRM Deployment. Successful attacks of this vulnerability

oracle siebel crmCWE-284
CVE-2026-60782critical 9.82026-08-18

Vulnerability in the Oracle Payments product of Oracle E-Business Suite (component: File Transmission). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Payments. Successful attacks of this vulnerability can result in takeover of Oracle Payments. CVSS 3.1 Base Score 9.8 (Confidentiality, Integr

oracle paymentsCWE-306
CVE-2026-60781high 7.12026-08-18

Vulnerability in the Oracle Payments product of Oracle E-Business Suite (component: File Transmission). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Payments. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Payment

oracle paymentsCWE-306
CVE-2026-60779high 8.12026-08-18

Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel Apps - Marketing. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all S

oracle siebel apps - marketingCWE-284
CVE-2026-60769high 7.52026-08-18

Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle General Ledger. Successful attacks of this vulnerability can result in takeover of Oracle General Ledger. CVSS 3.1 Base Score 7.5 (Co

oracle general ledgerCWE-306
CVE-2026-60767high 8.82026-08-18

Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel Apps - Marketing. Successful attacks of this vulnerability can result in takeover of Siebel Apps - Marketing. CVSS 3.1 Base Score 8.8 (Confidentiality, In

oracle siebel apps - marketingCWE-284
CVE-2026-60766high 7.42026-08-18

Vulnerability in the Siebel CRM Integration product of Oracle Siebel CRM (component: REST). Supported versions that are affected are 17.0-26.6. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Siebel CRM Integration. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Sieb

oracle siebel crmCWE-284
CVE-2026-60765high 7.52026-08-18

Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). Supported versions that are affected are 17.0-26.6. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel Apps - Marketing. Successful attacks of this vulnerability can result in takeover of Siebel Apps - Marketing. CVSS 3.1 Base Score 7.5 (Confidentiality,

oracle siebel apps - marketingCWE-346CWE-306
CVE-2026-60759high 7.42026-08-18

Vulnerability in the Oracle Internet Procurement Connector product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Internet Procurement Connector. Successful attacks of this vulnerability can result in unauthorized creation, delet

CWE-284
CVE-2026-60758high 8.52026-08-18

Vulnerability in the Siebel Artificial Intelligence product of Oracle Siebel CRM (component: AI). Supported versions that are affected are 25.12-26.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel Artificial Intelligence. While the vulnerability is in Siebel Artificial Intelligence, attacks may significantly impact additional products (scope change

CWE-284
CVE-2026-60757high 8.12026-08-18

Vulnerability in the Siebel CRM End User product of Oracle Siebel CRM (component: Search). Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows unauthenticated attacker with access to the physical communication segment attached to the hardware where the Siebel CRM End User executes to compromise Siebel CRM End User. Successful attacks of this vulnerability can result in unaut

oracle siebel crmCWE-284
CVE-2026-60754critical 9.12026-08-18

Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Siebel Apps - Marketing. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Siebel Apps - Ma

oracle siebel apps - marketingCWE-284
CVE-2026-60753high 7.82026-08-18

Vulnerability in the Siebel CRM Deployment product of Oracle Siebel CRM (component: Installation). Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Siebel CRM Deployment executes to compromise Siebel CRM Deployment. Successful attacks of this vulnerability can result in takeover of Siebel CRM Deployment. CVSS 3

oracle siebel crm deploymentCWE-284
CVE-2026-60752high 7.12026-08-18

Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel Apps - Marketing. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Siebel Apps - Mar

oracle siebel apps - marketingCWE-284
CVE-2026-60751high 8.82026-08-18

Vulnerability in the Siebel Apps - Marketing product of Oracle Siebel CRM (component: Marketing). Supported versions that are affected are 17.0-26.6. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Siebel Apps - Marketing. Successful attacks of this vulnerability can result in takeover of Siebel Apps - Marketing. CVSS 3.1 Base Score 8.8 (Confidentiality, In

oracle siebel apps - marketingCWE-306CWE-284
CVE-2026-60748high 7.62026-08-18

Vulnerability in the Oracle General Ledger product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle General Ledger. While the vulnerability is in Oracle General Ledger, attacks may significantly impact additional products (scope chang

oracle general ledgerCWE-284
CVE-2026-60742high 8.12026-08-18

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: PIA Core Technology). Supported versions that are affected are 8.61-8.63. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can result in takeover of PeopleSoft Enterprise PeopleTools. C

oracle peoplesoft enterprise peopletoolsCWE-284CWE-306
CVE-2026-60737critical 9.12026-08-18

Vulnerability in the Oracle Web Services Manager product of Oracle Fusion Middleware (component: Web Services Security). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Web Services Manager. Successful attacks of this vulnerability can result in unauthorized creation, deletion or

oracle web services managerNVD-CWE-noinfoCWE-284
Known exploited vulnerabilities
CVE-2023-49105unknownexploited2026-08-27

ownCloud contains an improper authentication vulnerability that allows an attacker to access, modify, or delete any file without authentication if the username of a victim is known, and the victim has no signing-key configured.

ownCloudownCloud
CISA due: 2026-08-30Ransomware use: Unknown
CVE-2026-53362unknownexploited2026-08-27

Linux Kernel contains an unspecified vulnerability that can allow for privilege escalation via IPv6 networking subsystem. This vulnerability can impact multiple products, including but not limited to Suse, Red Hat, and other products using Linux.

LinuxKernel
CISA due: 2026-08-30Ransomware use: Unknown
CVE-2026-66384unknownexploited2026-08-27

JFrog Artifactory contains an improper limitation of a pathname to a restricted directory vulnerability. This can allow an authenticated user to write data outside the intended Docker cache path under specific remote-repository conditions.

JFrogArtifactory
CISA due: 2026-09-10Ransomware use: Unknown
CVE-2021-23758unknownexploited2026-08-26

Ajax.NET Professional (AjaxPro) contains a deserialization of untrusted data vulnerability that could allow for remote code execution via arbitrary .NET classes. The impacted product(s) could be end-of-life (EoL) and/or end-of-service (EoS). Users are advised to discontinue use and/or transition to a supported version.

Ajax.NET ProfessionalAjax.NET Professional
CISA due: 2026-09-09Ransomware use: Unknown
CVE-2015-3246unknownexploited2026-08-26

Red Hat libuser contains a race condition vulnerability that allows authenticated local users to corrupt the /etc/passwd file to cause a denial of service or privilege escalation.

Red HatLibuser
CISA due: 2026-09-09Ransomware use: Unknown
CVE-2015-5287unknownexploited2026-08-26

Red Hat Automatic Bug Reporting Tool (ABRT) contains a privilege escalation vulnerability that could allow local users with certain permissions to gain privileges via a symlink attack on a file with a predictable name. The impacted product(s) could be end-of-life (EoL) and/or end-of-service (EoS). Users are advised to discontinue use and/or transition to a supported version.

Red HatAutomatic Bug Reporting Tool
CISA due: 2026-09-09Ransomware use: Unknown
CVE-2022-0995unknownexploited2026-08-26

Linux Kernel contains an out-of-bounds memory write vulnerability which could allow a local user to gain privileged access or cause a denial of service on the system.

LinuxKernel
CISA due: 2026-09-09Ransomware use: Unknown
CVE-2026-8452unknownexploited2026-08-26

Citrix NetScaler ADC and NetScaler Gateway contain an improper restriction of operations within the bounds of a memory buffer vulnerability which could lead to denial of service.

CitrixNetScaler ADC and NetScaler Gateway
CISA due: 2026-08-29Ransomware use: Unknown
CVE-2019-1068unknownexploited2026-08-26

Microsoft SQL Server contains a remote code execution vulnerability that could allow an attacker to execute code in the context of the SQL Server Database Engine service account.

MicrosoftSQL Server
CISA due: 2026-08-29Ransomware use: Unknown
CVE-2026-60004unknownexploited2026-08-25

Gitea contains a code injection vulnerability that allows an attacker with repository write access to send a malicious patch to the diffpatch API endpoint to plant an executable Git hook and run shell commands as the Gitea service account.

GiteaGitea
CISA due: 2026-08-28Ransomware use: Unknown
CVE-2026-21962unknownexploited2026-08-24

Oracle HTTP Server and Oracle Weblogic Server Proxy Plug-in contain an improper access control vulnerability that can result in unauthorized creation, deletion or modification access to critical data as well as unauthorized access to critical data or complete access to all Oracle HTTP Server and Oracle Weblogic Server Proxy Plug-in accessible data.

OracleHTTP Server and Oracle Weblogic Server Proxy Plug-in
CISA due: 2026-08-27Ransomware use: Unknown
CVE-2026-73570unknownexploited2026-08-21

Zimbra Collaboration Suite (ZCS) contains an OS command injection vulnerability which could allow an unauthenticated attacker to send specially crafted SMTP requests that may result in execution of arbitrary operating system commands as the Zimbra user.

SynacorZimbra Collaboration Suite (ZCS)
CISA due: 2026-08-24Ransomware use: Unknown
CVE-2026-72530unknownexploited2026-08-20

TrueConf Server contains a code injection vulnerability that could allow an unauthorized remote attacker with network access via port 4307/TCP to use a specially crafted script to break out of the isolated environment and execute arbitrary code on the host system.

TrueConfServer
CISA due: 2026-09-03Ransomware use: Unknown
CVE-2026-72529unknownexploited2026-08-20

TrueConf Server contains a missing authentication for critical function vulnerability which could allow a remote unauthorized attacker with network access via port 4307/TCP to execute an arbitrary script.

TrueConfServer
CISA due: 2026-08-23Ransomware use: Unknown
CVE-2026-64849unknownexploited2026-08-19

MLflow contains a server-side request forgery vulnerability that can allow attackers to reach internal or cloud metadata services and receive response_status and response_body.

MLflowMLflow
CISA due: 2026-09-02Ransomware use: Unknown
CVE-2026-33824unknownexploited2026-08-18

Microsoft Internet Key Exchange (IKE) Service Extensions contains a double free vulnerability that could enable remote code execution.

MicrosoftInternet Key Exchange (IKE) Service Extensions
CISA due: 2026-08-21Ransomware use: Unknown
CVE-2026-59310unknownexploited2026-08-18

Broadcom VMware vCenter contains a path traversal vulnerability which could allow a threat actor with network access to vCenter to execute arbitrary code.

BroadcomVMware vCenter
CISA due: 2026-08-21Ransomware use: Unknown
CVE-2026-55040unknownexploited2026-08-18

Microsoft SharePoint contains a weak authentication vulnerability which allows an unauthorized attacker to bypass a security feature over a network.

MicrosoftSharePoint
CISA due: 2026-08-21Ransomware use: Unknown
CVE-2026-65400unknownexploited2026-08-18

Apple macOS contains an improper authentication vulnerability that could allow an attacker on the network to authenticate to Screen Sharing without valid credentials.

ApplemacOS
CISA due: 2026-08-21Ransomware use: Unknown
CVE-2025-62593unknownexploited2026-08-17

Ray-Project Ray contains a code injection vulnerability that could allow remote code execution. Developers using Ray as a development tool may be exposed to this vulnerability exploitable through Firefox and Safari.

Ray-ProjectRay
CISA due: 2026-08-20Ransomware use: Unknown
CVE-2026-20349unknownexploited2026-08-11

Cisco Secure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD) contain a heap inspection vulnerability that could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS) condition.

CiscoSecure Firewall Adaptive Security Appliance (ASA) and Secure Firewall Threat Defense (FTD)
CISA due: 2026-08-14Ransomware use: Unknown
CVE-2026-68820unknownexploited2026-08-11

Microsoft Windows Ancillary Function Driver for WinSock contains a use-after-free vulnerability that allows an authorized attacker to elevate privileges locally.

MicrosoftWindows Ancillary Function Driver for WinSock
CISA due: 2026-08-25Ransomware use: Unknown
CVE-2026-72898unknownexploited2026-08-11

Metabase contains a SQL Injection vulnerability that allows an unauthenticated remote attacker to inject arbitrary SQL into the Metabase application database, which can give them administrator access to the instance. From there, the attacker could change the application configuration, steal stored credentials for the connected databases, read any data accessible through those connections, and export data.

MetabaseMetabase
CISA due: 2026-08-14Ransomware use: Unknown
CVE-2026-8037unknownexploited2026-08-07

Progress LoadMaster contains a command injection vulnerability that allows an un-authenticated attacker to execute arbitrary commands on the LoadMaster appliance by exploiting unsanitized input in multiple command endpoints.

ProgressLoadMaster
CISA due: 2026-08-10Ransomware use: Unknown
CVE-2026-63077unknownexploited2026-08-05

JetBrains TeamCity contains a deserialization of untrusted data vulnerability that could allow unauthenticated remote code execution via the agent polling protocol.

JetBrainsTeamCity
CISA due: 2026-08-08Ransomware use: Unknown
CVE-2026-18556unknownexploited2026-08-04

N-able N-central contains an authentication bypass using an alternate path or channel that allows for authentication bypass.

N-ableN-central
CISA due: 2026-08-07Ransomware use: Unknown
CVE-2026-34486unknownexploited2026-08-04

Apache Tomcat contains a missing encryption of sensitive data vulnerability that allows the bypass of the EncryptInterceptor. This vulnerability can be chained with CVE‑2025‑24813.

ApacheTomcat
CISA due: 2026-08-07Ransomware use: Unknown
CVE-2026-9198unknownexploited2026-08-04

Langflow contains a code injection vulnerability that allows unauthenticated attackers to achieve full remote code execution on default Langflow deployments.

IBMLangflow
CISA due: 2026-08-07Ransomware use: Unknown
CVE-2026-18577unknownexploited2026-08-03

N-able N-central contains an authentication bypass using an alternate path or channel allows for authentication bypass and account takeover in N-central. This vulnerability is the result of an incomplete patch for CVE-2026-18556.

N-ableN-central
CISA due: 2026-08-06Ransomware use: Unknown
CVE-2026-20316unknownexploited2026-07-29

Cisco Secure Firewall Management Center (FMC) formerly known as Firepower Management Center contains a use of hard-coded password vulnerability that could allow an unauthenticated, remote attacker to log in to an affected device using a low-privileged account to access sensitive data within the impacted systems.

CiscoSecure Firewall Management Center (FMC)
CISA due: 2026-08-01Ransomware use: Unknown
Latest breach disclosures
Carharttverified2026-08-25
12.9M accountscarhartt.com
Email addressesNamesPhone numbersPhysical addresses
NIUSverified2026-08-23
6K accountsnius.de
Bank account numbersEmail addressesNamesPartial credit card dataPhysical addressesPurchases
Golf Canadaverified2026-08-22
569K accountsgolfcanada.ca
Dates of birthEmail addressesGendersGeographic locationsNamesUsernames
Oz Hair and Beautyverified2026-08-19
2.0M accountsozhairandbeauty.com
Email addressesGeographic locationsNamesPhone numbersPurchases
Fanloreverified2026-08-19
145K accountsfanlore.org
Email addressesNamesPasswordsUsernames
RingCentralverified2026-08-13
1.6M accountsringcentral.com
Email addressesNamesPhone numbersPhysical addresses
Alconverified2026-08-09
218K accountsalcon.com
Email addressesNamesPhone numbersPhysical addresses
Brinks Homeverified2026-08-08
732K accountsbrinkshome.com
Dates of birthEmail addressesNamesPartial credit card dataPhone numbersPhysical addressesPurchases
Exact Sciencesverified2026-08-07
10.9M accountsexactsciences.com
Dates of birthEmail addressesGendersNamesPersonal health dataPhone numbersPhysical addresses
Inter-Con Securityverified2026-08-05
276K accountsicsecurity.com
Email addressesEmployersJob titlesNamesPhone numbersPhysical addresses
SplitVPNverified2026-08-01
865K accountssplitvpn.io
Device informationEmail addressesGeographic locationsIP addressesPartial credit card data
Houston City Collegeverified2026-07-28
832K accountshccs.edu
Academic recordsCitizenship statusesDates of birthEmail addressesGendersNamesPhone numbersPhysical addresses
Sunoverified2026-07-20
55.3M accountssuno.com
Email addressesNamesPartial credit card dataPhone numbersPhysical addressesPurchases
Paidworkverified2026-07-19
23.3M accountspaidwork.com
Bank account numbersDates of birthDevice informationEducation levelsEmail addressesFinancial transactionsGendersIP addresses
Flukeverified2026-07-15
821K accountsfluke.com
Email addressesEmployersJob titlesNamesPhysical addressesSupport tickets
Goose Creekverified2026-07-15
6.6M accountsgoosecreek.com
Email addressesNamesPhone numbersPhysical addressesPurchases
Glendale Community Collegeverified2026-07-11
794K accountsglendale.edu
Academic recordsDates of birthEmail addressesGendersGovernment issued IDsNamesPhone numbersPhysical addresses
Moody Bible Instituteverified2026-07-03
2.3M accountsmoody.edu
Dates of birthEmail addressesGendersMarital statusesNamesPhone numbersPhysical addresses
Syscoverified2026-06-28
2.7M accountssysco.com
Customer feedbackEmail addressesEmployersJob titlesNamesPhone numbersPhysical addressesUsernames
American Towerverified2026-06-26
217K accountsamericantower.com
Email addressesJob titlesNamesPhone numbersPhysical addresses
Security news

Threat research gives security teams insight into how attackers operate, while MDR turns that intelligence into faster detection and response. ESET explains how combining threat intelligence, continuous monitoring, and human expertise can help SMBs strengthen

2026-08-27

Google Workspace breaches can begin with social engineering or forgotten third-party integrations rather than sophisticated exploits. This webinar examines real-world breaches, what happens during the critical first hours, and the security controls that can ma

2026-08-27

Security teams have spent years trying to detect threats faster. AI is changing the harder part: how much time defenders have left to act. Advanced AI models can now help attackers discover vulnerabilities, generate exploit code, and move through weaknesses fa

2026-08-27

AI is officially mainstream in security operations. According to Prophet Security's State of AI in Security Operations 2026 report (produced from ViB’s survey of 250+ cybersecurity pros), 40% of security teams now use AI daily. Another 56% are currently testin

2026-08-27

Meta has reached a proposed settlement worth up to approximately $18 billion with a bipartisan coalition of 52 attorneys generals over allegations that Facebook and Instagram were deliberately designed to encourage compulsive use by children and teenagers. [..

2026-08-26
Sources