j2commerce.com / J2Store extension for Joomla
Joomla Extension - j2commerce.com - Unauthenticated blind SQL injection in the storefront product list in J2Store 1.0.0-3.3.2, 4.0.0-4.0.22, 4.1.0-4.1.7
- CWE
- CWE-89
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
joomgalleryfriends.net / JoomGallery extension for Joomla
Joomla Extension - joomgalleryfriends.net - Unauthenticated arbitrary file upload via the TUS endpoint in JoomGallery < 4.4.1
- CWE
- CWE-284
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
j2commerce.com / J2Store extension for Joomla
Joomla Extension - j2commerce.com - Any order can be marked Failed by anyone in J2Store 1.0.0-3.3.2, 4.0.0-4.0.22, 4.1.0-4.1.7
- CWE
- CWE-472
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
wordplus / Better Messages – Chat Rooms, Group Chat, Private Messages & AI Chat Bots
Better Messages – Chat Rooms, Group Chat, Private Messages & AI Chat Bots plugin for WordPress <= 2.15.22 - Reflected Cross-Site Scripting via 'icn' Parameter
- CWE
- CWE-79
- Published
- Sep 16, 2026
- Updated
- Sep 16, 2026
ladela / Online Scheduling and Appointment Booking System – Bookly
Online Scheduling and Appointment Booking System <= 28.1 - Insecure Direct Object Reference to Unauthenticated Sensitive Data Access and Message Injection via 'conversation_id' Parameter
- CWE
- CWE-639
- Published
- Sep 16, 2026
- Updated
- Sep 16, 2026
boldthemes / Bold Page Builder
Bold Page Builder <= 5.9.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via 'shortcode_content' Parameter
- CWE
- CWE-79
- Published
- Sep 16, 2026
- Updated
- Sep 16, 2026
Google / Android
In Vp9DecodeFrameTag of vp9hwd_headers.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In gf_ta_test_set_config of gf_ta_test.c, there is a possible out-of-bounds write due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In Cellular Modem, there is a possible out-of-bounds write due to a heap buffer overflow. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In gf_base_update_finger_base of gf_base.c, there is a possible out-of-bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In printf of printf.c, there is a possible out-of-bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In multiple locations, there is a possible out-of-bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In VPU, there is a possible out-of-bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In multiple functions of remap.c, there is a possible out-of-bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In ReadTileInfo of vp9hwd_headers.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In multiple locations, there is a possible out-of-bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In Start of AudioRtpPayloadEncoderNode.cpp, there is a possible out-of-bounds write due to improper input validation. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation.
- CWE
- CWE-20
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In multiple locations, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In Av1DecodeFrameTag of vp9hwd_headers.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In phNxpNciHal_ext_process_nfc_init_rsp of phNxpNciHal_ext.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In multiple locations, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In gmc_mb_msg_handler of gmc_mba.c, there is a possible memory corruption due to a confused deputy. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-441
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In CPM, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-441
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In VPU, there is a possible out-of-bounds write due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In multiple files, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-441
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In ap_pmic_poll_msg_handler of ap_pmic_ipc.c, there is a possible permission bypass due to a confused deputy. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-441
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In Cellular Modem, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In multiple locations, there is a possible out-of-bounds write due to a logic error in the code. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In IP Multimedia Subsystem, there is a possible out-of-bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-120
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In decodeAmr of ImsMediaAudioPlayer.cpp, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation.
- CWE
- CWE-120
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In s_decode_vui_param of fw_hevc_dec_header.c, there is a possible out-of-bounds write due to a logic error in the code. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In Cellular Modem, there is a possible out-of-bounds write due to a heap buffer overflow. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-122
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In IP Multimedia Subsystem, there is a possible out-of-bounds write due to improper input validation. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-20
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In DecodeFilmGrainParams of film_grain_dec.cc, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-120
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In Cellular Modem, there is a possible information disclosure due to a logic error in the code. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-200
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In multiple locations, there is a possible use-after-free due to a race condition. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-416
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In bigo_worker_thread of bigo.c, there is a possible escalation of privilege due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-362
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
BlueZ / BlueZ
BlueZ A2DP Stack-based Buffer Overflow Remote Code Execution Vulnerability
- CWE
- CWE-121
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In handle_unmap_req of tipc_virtio_dev.c, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-362
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In multiple locations, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-416
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
libwebsockets / libwebsockets
libwebsockets HTTP/2 HPACK Path Header Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In multiple functions of bluetooth_cco.cc, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-416
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
pdfforge / PDF Architect
pdfforge PDF Architect PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In trusty_dputc of generic-arm64-smcall.c, there is a possible out-of-bounds write due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-362
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
pdfforge / PDF Architect
pdfforge PDF Architect PDF File Parsing Memory Corruption Remote Code Execution Vulnerability
- CWE
- CWE-119
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In multiple locations, there is a possible time-of-check to time-of-use due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-362
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
pdfforge / PDF Architect
pdfforge PDF Architect PDF File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In smmu_detach_dev_nested of arm-smmu-v3.c, there is a possible escalation of privilege due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-20
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
pdfforge / PDF Architect
pdfforge PDF Architect App Object Out-Of-Bounds Read Remote Code Execution Vulnerability
- CWE
- CWE-125
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In multiple locations, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-416
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In FsmReleaseKey of fsm.c, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-693
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In ARM64_TLBI of mmu.h, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-362
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In google_mba_recv_msg of google_mba_poll.c, there is a possible out-of-bounds write due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In platform_msg_handler_init of default_msg_handlers.c, there is a possible confused deputy due to a confused deputy. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-441
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In multiple locations, there is a possible escalation of privilege due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-20
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In smmu_detach_dev of arm-smmu-v3.c, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-693
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In multiple functions of arm-smmu-v3.c, there is a possible use-after-free due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-416
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In smmu_install_nested_ste of arm-smmu-v3.c, there is a possible escalation of privilege due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-693
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In GPU, there is a possible permission bypass due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-693
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
pdfforge / PDF Architect
pdfforge PDF Architect activation-service Update Service Uncontrolled Search Path Element Local Privilege Escalation Vulnerability
- CWE
- CWE-427
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In multiple functions of arm-smmu-v3.c, there is a possible escalation of privilege due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-693
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In multiple functions of arm-smmu-v3.c, there is a possible escalation of privilege due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-693
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Cisco / Cisco Enterprise NFV Infrastructure Software
Cisco UCS and UCS-Based Appliances UEFI Shell Secure Boot Bypass Vulnerability
- CWE
- CWE-749
- Published
- Sep 8, 2026
- Updated
- Sep 16, 2026
Arista Networks / EOS
On affected platforms running Arista EOS, under certain circumstances plaintext shared secrets for configured Terminal Access Controller Access-Control System Plus (TACACS+) servers
- CWE
- CWE-532
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In link_load_gnss_image of link_device.c, there is a possible out-of-bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Arista Networks / EOS
On affected platforms running Arista EOS, under certain circumstances plaintext private keys
- CWE
- CWE-532
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Arista Networks / EOS
On affected platforms running Arista EOS, under certain circumstances plaintext user passwords
- CWE
- CWE-532
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
OriginLab / Origin Viewer
OriginLab Origin Viewer OGM File Parsing Memory Corruption Remote Code Execution Vulnerability
- CWE
- CWE-119
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Cisco / Cisco Enterprise NFV Infrastructure Software
Cisco IMC Remote Code Execution Vulnerability Remote Code Execution Vulnerability
- CWE
- CWE-146
- Published
- Aug 5, 2026
- Updated
- Sep 16, 2026
OriginLab / Origin Viewer
OriginLab Origin Viewer OGWU File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Dell / Wyse Management Suite
Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain a Missing Cryptographic Step vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Information tampering.
- CWE
- CWE-325
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Cisco / Cisco IOS XR Software
Cisco IOS XR Software Security Hardening Release: September 2026
- CWE
- CWE-707
- Published
- Sep 2, 2026
- Updated
- Sep 16, 2026
IBM / MQ
IBM MQ .NET client is vulnerable to remote code execution
- CWE
- CWE-787
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Dell / Wyse Management Suite
Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain an Unrestricted Upload of File with Dangerous Type vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Remote execution.
- CWE
- CWE-434
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Dell / Wyse Management Suite
Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain an Unrestricted Upload of File with Dangerous Type vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Remote execution.
- CWE
- CWE-434
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Dell / Wyse Management Suite
Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain an Unrestricted Upload of File with Dangerous Type vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Remote execution.
- CWE
- CWE-434
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Cisco / Cisco IOS XR Software
Cisco IOS XR Software Security Hardening Release: September 2026
- CWE
- CWE-703
- Published
- Sep 2, 2026
- Updated
- Sep 16, 2026
IBM / MQ
IBM MQ Java messaging is vulnerable to remote code execution
- CWE
- CWE-502
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Google / Android
In Cellular Modem, there is a possible permission bypass due to a logic error in the code. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
- CWE
- CWE-693
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
IBM / MQ
IBM MQ Java messaging is vulnerable to remote code execution
- CWE
- —
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
GitLab / GitLab
Improper Neutralization of Special Elements used in a Command ('Command Injection') in GitLab
- CWE
- CWE-77
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Atlassian / Jira Service Management Data Center
This High severity Improper Authorization vulnerability was introduced in version 11.3.0 of Jira Service Management Data Center.
This Improper Authorization vulnerability, with a CVSS Score of 7.1, allows an authenticated attacker to gain unintended access and can lead to the exposure of resources or functionality, possibly providing attackers with sensitive information or even execute arbitrary code.
Atlassian recommends that Jira Service Management Data Center customers upgrade to latest version, if you are unable to do so, upgrade your instance to one of the specified supported fixed versions:
* Jira Service Management Data Center 11.3: Upgrade to a release greater than or equal to 11.3.11
See the release notes (https://confluence.atlassian.com/servicemanagement/jira-service-management-release-notes-780083086.html). You can download the latest version of Jira Service Management Data Center from the download center (https://www.atlassian.com/software/jira/service-management/download-archives).
This vulnerability was reported via our Penetration Testing program.
- CWE
- CWE-285
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Atlassian / Confluence Data Center
This High severity Improper Authorization vulnerability was introduced in versions 7.4.0, 7.13.0, 8.5.0, 8.9.0, 9.0.1, 9.1.0, 9.2.0, 9.3.1, 9.4.0, 9.5.1, 10.0.2, 10.1.0, and 10.2.0 of Confluence Data Center.
This Improper Authorization vulnerability, with a CVSS Score of 7.1, allows an authenticated attacker to gain unintended access and can lead to the exposure of resources or functionality, possibly providing attackers with sensitive information or even execute arbitrary code.
Atlassian recommends that Confluence Data Center customers upgrade to latest version, if you are unable to do so, upgrade your instance to one of the specified supported fixed versions:
Confluence Data Center 9.2: Upgrade to a release greater than or equal to 9.2.24
Confluence Data Center 10.2: Upgrade to a release greater than or equal to 10.2.17
See the release notes ([https://confluence.atlassian.com/doc/confluence-release-notes-327.html]). You can download the latest version of Confluence Data Center from the download center ([https://www.atlassian.com/software/confluence/download-archives]).
This vulnerability was reported via our Penetration Testing program.
- CWE
- CWE-285
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Apple / macOS
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. Connecting to a malicious SMB server may lead to kernel memory corruption.
- CWE
- CWE-787
- Published
- Sep 14, 2026
- Updated
- Sep 16, 2026
Apple / iOS and iPadOS
A use-after-free issue was addressed with improved memory management. This issue is fixed in iOS 26.7 and iPadOS 26.7, macOS Golden Gate 27, macOS Sequoia 15.8. An app may be able to cause unexpected system termination or corrupt kernel memory.
- CWE
- CWE-416
- Published
- Sep 14, 2026
- Updated
- Sep 16, 2026
Apple / Safari
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in Safari 26.6.1, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, tvOS 27, visionOS 27, watchOS 27. Processing maliciously crafted web content may lead to memory corruption.
- CWE
- CWE-190
- Published
- Sep 14, 2026
- Updated
- Sep 16, 2026
Apple / Safari
An integer overflow was addressed with improved input validation. This issue is fixed in Safari 26.6.1, iOS 26.6.1 and iPadOS 26.6.1, macOS Tahoe 26.6.2, tvOS 27, visionOS 27, watchOS 27. Processing maliciously crafted web content may lead to memory corruption.
- CWE
- CWE-190
- Published
- Sep 14, 2026
- Updated
- Sep 16, 2026
IBM / MQ
IBM MQ Resource Adapter IVT servlet is vulnerable to unauthenticated remote code execution
- CWE
- CWE-74
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
IBM / MQ
IBM MQ Resource Adapter IVT message-driven bean is vulnerable to remote code execution via JNDI injection
- CWE
- CWE-913
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
IBM / MQ
IBM MQ is vulnerable to unauthenticated remote code execution via JNDI injection
- CWE
- CWE-74
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Cisco / Cisco IOS XR Software
Cisco IOS XR Software Security Hardening Release: September 2026
- CWE
- CWE-284
- Published
- Sep 2, 2026
- Updated
- Sep 16, 2026
Apple / iOS and iPadOS
The issue was addressed with improved memory handling. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted 3D model may lead to memory corruption.
- CWE
- CWE-120
- Published
- Sep 14, 2026
- Updated
- Sep 16, 2026
openbao / openbao
OpenBao: LDAPi ldaputil (wrong escape func)
- CWE
- CWE-90
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
FreeRDP / FreeRDP
FreeRDP 2.0.0 through 3.30.0 Heap Buffer Overflow via RoutingToken
- CWE
- CWE-122
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
FreeRDP / FreeRDP
FreeRDP before 3.31.0 Out-of-bounds Write via SHOW_PROTOCOL
- CWE
- CWE-191
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
FreeRDP / FreeRDP
FreeRDP Server before 3.31.0 Use-After-Free via DRDYNVC
- CWE
- CWE-362
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
woodpecker-ci / woodpecker
Woodpecker: Privilege escalation via unrestricted serviceAccountName in the Kubernetes backend
- CWE
- CWE-269
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Dell / SmartFabric OS10 Software
Dell SmartFabric OS10 Software, versions prior to 10.6.1.3, contains a Download of Code Without Integrity Check vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution.
- CWE
- CWE-494
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Dell / SmartFabric OS10 Software
Dell SmartFabric OS10 Software, versions prior to 10.6.1.3, contains a Session Fixation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Session theft.
- CWE
- CWE-284
- Published
- Sep 15, 2026
- Updated
- Sep 16, 2026
Apple / iOS and iPadOS
An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted 3D model may lead to memory corruption.
- CWE
- CWE-787
- Published
- Sep 14, 2026
- Updated
- Sep 16, 2026