Common Vulnerabilities and Exposures (CVE)

CVE-2023-44227

Aug 12, 2026 17:32:59 UTC

Missing Authorization vulnerability in Mitchell Bennis Simple File List.This issue affects Simple File List: from n/a through 6.1.9.

CVE-2026-18669

Aug 12, 2026 17:32:05 UTC

IBM i 7.6, 7.5, 7.4, and 7.3 is vulnerable to a privilege escalation as the result of a remote code execution vulnerability in the activation engine component. An authenticated attacker can execute a maliciously planted script with root aut...

CVE-2024-32532

Aug 12, 2026 17:31:58 UTC

Missing Authorization vulnerability in SiteGround Speed Optimizer.This issue affects Speed Optimizer: from n/a through 7.4.6.

CVE-2026-73299

Aug 12, 2026 17:31:38 UTC

Prompty is a markdown file format (.prompty) for LLM prompts. Prior to 0.1.5 and 2.0.0-beta.5, the TypeScript Nunjucks renderer evaluated untrusted .prompty template bodies with unrestricted JavaScript member access. An attacker-controlled ...

CVE-2024-32518

Aug 12, 2026 17:31:19 UTC

Missing Authorization vulnerability in Pepro Dev. Group PeproDev Ultimate Invoice.This issue affects PeproDev Ultimate Invoice: from n/a through 2.0.0.

CVE-2026-16863

Aug 12, 2026 17:31:02 UTC

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information due to an out-of-bounds read.

CVE-2024-26882

Aug 12, 2026 17:30:31 UTC

In the Linux kernel, the following vulnerability has been resolved: net: ip_tunnel: make sure to pull inner header in ip_tunnel_rcv() Apply the same fix than ones found in : 8d975c15c0cd ("ip6_tunnel: make sure to pull inner header in __...

CVE-2026-16956

Aug 12, 2026 17:30:22 UTC

IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.

CVE-2026-18951

Aug 12, 2026 17:30:08 UTC

A flaw was found in the Red Hat OpenShift AI (RHOAI) overlay for the training operator. The RHOAI overlay incorrectly aggregates `trainjobs` management permissions into the native Kubernetes `edit ClusterRole`. This allows any user with `ed...

CVE-2026-16860

Aug 12, 2026 17:30:00 UTC

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to execute arbitrary code due to an uncontrolled search path element.

CVE-2026-59130

Aug 12, 2026 17:29:38 UTC

No cwe for this issue in AMD Zen allows an authorized attacker to disclose information locally.

CVE-2026-16906

Aug 12, 2026 17:29:14 UTC

IBM i 7.6, and 7.5 could allow a remote authenticated attacker to execute arbitrary commands with elevated privileges due to improper neutralization of special elements used in an OS command.

CVE-2026-65675

Aug 12, 2026 17:28:56 UTC

No cwe for this issue in Visual Studio Code CoPilot Chat Extension allows an unauthorized attacker to bypass a security feature over a network.

CVE-2026-16856

Aug 12, 2026 17:28:41 UTC

IBM i 7.6, and 7.5 could allow a local attacker to gain elevated privileges due to improper neutralization of special elements used in an OS command.

CVE-2026-18634

Aug 12, 2026 17:28:11 UTC

An insecure handling of serialized objects vulnerability was found in the one of the service of GMS application 9.5.1 (Build 9510.1044) and earlier versions. A local attacker with the ability to interact with the service could exploit this ...