Common Vulnerabilities and Exposures (CVE)

CVE-2026-73591

Sep 29, 2026 11:20:02 UTC

Dell Secure Connect Gateway (SCG) Policy Manager, versions prior to 5.34.00.16, contains an Inclusion of Sensitive Information in Source Code vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulne...

CVE-2026-76719

Sep 29, 2026 11:17:47 UTC

A security vulnerability in HPE OneView may be exploited remotely to perform session hijacking, data theft or other unauthorized actions.

CVE-2026-95520

Sep 29, 2026 11:13:43 UTC

A heap-based buffer overflow flaw was found in rpm. Parsing a symlink entry in an untrusted RPM package whose declared RPMTAG_LONGFILESIZES value is 0xFFFFFFFFFFFFFFFF causes an integer overflow in iterReadArchiveNext() that shrinks a buffe...

CVE-2026-86843

Sep 29, 2026 11:08:17 UTC

The Apache Airflow Teradata provider's compute-cluster example Dag declared every one of its Dag Params as unconstrained free text and templated them straight into the compute-cluster operators, which interpolate those values into Teradata ...

CVE-2026-81930

Sep 29, 2026 11:08:16 UTC

Apache Airflow's Snowflake provider did not validate the connection's `account` and `region` fields before interpolating them into request URLs. The SQL API endpoint is built as `https://{account}.snowflakecomputing.com/api/v2/statements`, ...

CVE-2026-81914

Sep 29, 2026 11:08:14 UTC

Apache Airflow's Google provider built Google Drive search expressions by interpolating file and folder names directly into single-quoted string literals, without escaping the quote character that delimits them. A name containing an apostro...

CVE-2026-81862

Sep 29, 2026 11:08:13 UTC

Apache Airflow's Teradata provider embedded cloud storage credentials directly into SQL statements. `S3ToTeradataOperator` and `AzureBlobStorageToTeradataOperator` interpolate the source bucket's credentials as plain string literals into th...

CVE-2026-0019

Sep 29, 2026 11:08:12 UTC

In SettingsLib, there is a possible way to disable system components due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for explo...

CVE-2026-0018

Sep 29, 2026 11:08:11 UTC

In multiple functions of AccessibilityManagerService.java, there is a possible persistent denial of service due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. User in...

CVE-2026-0017

Sep 29, 2026 11:08:10 UTC

In onChange of BiometricService.java, there is a possible way to enable fingerprint unlock due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction i...

CVE-2026-0016

Sep 29, 2026 11:08:09 UTC

In updateProvidersWhenServiceRemoved of CredentialManagerService.java, there is a possible way to override settings across users due to a permissions bypass. This could lead to local information disclosure with no additional execution privi...

CVE-2026-15390

Sep 29, 2026 10:55:43 UTC

Das U-Boot with CONFIG_IP_DEFRAG=y parameter fails to clear IP reassembly state after delivering a complete datagram. An attacker who can deliver fragmented IP traffic can execute arbitrary code by sending duplicated last-fragment IP packet...

CVE-2026-76720

Sep 29, 2026 10:52:53 UTC

A vulnerability in HPE OneView can be remotely exploited to cause a URL redirect.

CVE-2026-19547

Sep 29, 2026 10:52:27 UTC

Ghostscript for Windows is vulnerable to local privilege escalation through PostScript resource file hijacking. Due to the application searching for PostScript resource files in predictable paths under C:\\gs\\ that do not exist by default ...

CVE-2026-102366

Sep 29, 2026 10:49:19 UTC

mall4j through 4.0 contains an unrestricted file upload vulnerability in FileController endpoints that lack authorization checks and accept arbitrary file types without validation. Attackers with any authenticated token can upload HTML or S...