Tag
Critical Vulnerabilities in CareCam CM2507 IP Cameras
4 TTPsMultiple high-severity vulnerabilities in CareCam CM2507 firmware v251211.1507 allow unauthenticated remote access, credential theft, and arbitrary code execution due to authentication bypasses and design flaws.
Critical Security Updates for Ivanti Endpoint Manager Mobile, Neurons for ITSM, and Sentry
2 CVEsIvanti released security patches for multiple products, including Endpoint Manager Mobile, Neurons for ITSM, and Sentry, addressing vulnerabilities identified as CVE-2026-18851 and CVE-2026-83527.
Multiple Vulnerabilities in Samsung Android Implementations
2 TTPsMultiple vulnerabilities in Samsung's Android implementation allow remote or local attackers to achieve arbitrary code execution with root privileges, escalate permissions, and cause denial-of-service.
Critical Vulnerability in n8n Allows Remote File Manipulation and Data Disclosure
1 TTP 1 CVEA vulnerability in n8n allows a remote, unauthenticated attacker to manipulate files and disclose sensitive information on the platform, identified as CVE-2024-51746.
Cross-Site Scripting Vulnerability in IBM App Connect Enterprise
1 TTP 1 CVEIBM App Connect Enterprise contains a vulnerability, identified as CVE-2024-44280, that allows a remote, anonymous attacker to execute Cross-Site Scripting (XSS) attacks within the context of the affected application.
Mattermost Security Update for CVE-2026-9816
1 CVEMattermost has released critical security patches for multiple versions to address vulnerabilities tracked under CVE-2026-9816.
Grafana Improper Access Control Information Disclosure Vulnerability
3 TTPs 1 CVEAn authenticated, remote attacker can exploit a flaw in Grafana to perform unauthorized information disclosure due to improper access control.
Local Privilege Escalation in Sophos Endpoint
1 TTPA local privilege escalation vulnerability in Sophos Endpoint allows an authenticated local attacker to execute arbitrary code with administrative privileges.
Critical Security Vulnerabilities in Progress MarkLogic Server
5 CVEs 2 IOCsProgress Software has released a security bulletin addressing ten critical vulnerabilities, including CVE-2026-7326 through CVE-2026-9203, affecting MarkLogic Server versions prior to 11.3.6 and 12.0.3.
Progress Software Security Advisory Addresses Multiple Vulnerabilities
5 CVEsProgress Software has issued a security advisory (AV26-755) addressing multiple vulnerabilities, identified by CVEs CVE-2026-59686 through CVE-2026-59690, across several of its products including ECS Connection Manager, LoadMaster, MOVEit WAF, Multi Tenant, and Object Scale Connection Manager, with specific versions prior to various patch levels being vulnerable, urging administrators to apply necessary updates to secure their systems.
Ivanti Xtraction Vulnerabilities CVE-2026-14902 and CVE-2026-14903
2 CVEsIvanti has published a security advisory (AV26-696) on July 14, 2026, to address two vulnerabilities, CVE-2026-14902 and CVE-2026-14903, affecting Ivanti Xtraction version 2026.2 and prior, urging users to apply necessary updates to mitigate potential risks.
Tanium Connect Multiple Vulnerabilities
3 rulesTanium released security advisories addressing vulnerabilities in Connect versions prior to Update 25 (v5.26.191), Update 19 (v5.29.237), and Update 9 (v5.37.140), potentially leading to unauthorized access and data compromise.
Atlassian Security Advisory Addressing Multiple Vulnerabilities
2 rulesAtlassian released a security advisory on May 19, 2026, addressing vulnerabilities in multiple products including Bamboo, Bitbucket, Confluence, Fisheye/Crucible, Jira, and Jira Service Management Data Center and Server.
Siemens Security Advisory Addressing Multiple Product Vulnerabilities
2 rulesSiemens released a security advisory on May 12, 2026, addressing vulnerabilities in a range of products including RUGGEDCOM, SCALANCE, Solid Edge, and SIMATIC, prompting users to apply necessary updates.