CVE-2026-1340
Ivanti Endpoint Manager Mobile (EPMM) Code Injection Vulnerability - Active in CISA KEV catalog.
Critical vulnerabilities, curated daily for security professionals
See how vulnerabilities affect your specific environment
CRS uses the System Security Context Vector (SSCV) Framework v1.0 to adjust CVSS scores based on your system's exposure level, network position, and business criticality. Learn more about SSCV Framework
WordPress plugins account for four of Thursday's 19 critical vulnerabilities, with CVE-2026-1830, CVE-2026-3296, CVE-2026-2942, and CVE-2026-4003 all scoring CVSS 9.8. Critical disclosures dropped 30% from Wednesday's 27, while high-priority CVEs held steady at 100. CVE-2026-39888 (CVSS 9.9) in Microsoft Teams represents the highest-scored finding, alongside CVE-2026-3535 (CVSS 9.8) in Google Web Fonts and CVE-2026-34179 (CVSS 9.1) in Canon LXD systems. Three vulnerabilities are confirmed actively exploited β Ivanti EPMM (CVE-2026-1340), Google Dawn (CVE-2026-5281), and TrueConf Client (CVE-2026-3502), each rated CVSS 9.5. Patch availability stands at zero percent across all 119 disclosed CVEs, making network-level mitigations and access restrictions the primary defensive option.
Immediate action: Prioritize restricting network access to Ivanti EPMM, Google Dawn, and TrueConf Client instances given confirmed active exploitation. WordPress administrators should audit and disable affected plugins until patches become available, and Teams deployments should be monitored for anomalous activity. With zero patches available across all 119 CVEs, implement network segmentation and enhanced logging as interim controls.
Ivanti Endpoint Manager Mobile (EPMM) Code Injection Vulnerability - Active in CISA KEV catalog.
A use-after-free vulnerability exists in the Dawn component of Google Chrome. This flaw allows attackers to potentially execute arbitrary code or cause a denial-of-service via a crafted HTML page.
TrueConf Client Download of Code Without Integrity Check Vulnerability - Active in CISA KEV catalog.
The Google Web Fonts GDPR plugin for WordPress is vulnerable to unauthenticated arbitrary file upload via the `DSGVOGWPdownloadGoogleFonts()` function, potentially leading to remote code execution.
The Quick Playground plugin for WordPress contains an RCE vulnerability due to insufficient authorization on REST API endpoints, allowing unauthenticated file uploads.
The Everest Forms WordPress plugin is vulnerable to PHP Object Injection via unsafe deserialization of user-supplied form metadata.
PraisonAI versions prior to 1.5.115 contain a sandbox escape vulnerability in its Python code execution tool, allowing arbitrary code execution.
PraisonAI versions prior to 4.5.115 are vulnerable to RCE via insecure YAML parsing, allowing execution of arbitrary JavaScript.
The ProSolution WP Client plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation, enabling potential Remote Code Execution.
A symlink following vulnerability in the Nix package manager allows users to overwrite files and escalate privileges to root in multi-user installations.
The Users manager β PN WordPress plugin contains a privilege escalation flaw allowing unauthenticated attackers to modify arbitrary user metadata.
Canonical LXD versions 4.12 through 6.7 contain a privilege escalation vulnerability where restricted TLS certificate users can elevate to cluster admin.
Unfurl contains an improper input validation vulnerability in configuration parsing that enables Flask debug mode by default, potentially leading to remote code execution.
An incomplete denylist in Canonical LXD allows a restricted project user to inject AppArmor and QEMU configurations, facilitating privilege escalation to host root.
The Totolink A7100RU contains an OS command injection vulnerability in the setVpnPassCfg function, allowing remote attackers to execute arbitrary system commands via the pptpPassThru parameter.
The Totolink A7100RU is susceptible to remote OS command injection via the setUPnPCfg function, specifically through the enable parameter in the CGI handler.
The Totolink A7100RU allows remote OS command injection via the setIptvCfg function by manipulating the igmpVer argument in the CGI handler.
The Totolink A7100RU is vulnerable to remote OS command injection via the setIpv6LanCfg function, exploitable through the addrPrefixLen argument in the CGI handler.
The Totolink A7100RU is susceptible to remote OS command injection via the setWiFiEasyCfg function, specifically through the merge argument in the CGI handler.
IBM Verify Identity and Security Verify Access products contain a privilege escalation vulnerability allowing locally authenticated users to gain root access.
A backup import validation flaw in Canonical LXD allows authenticated remote attackers to bypass project restrictions and achieve full host compromise.
Six Apart Movable Type contains a code injection vulnerability that allows an authenticated attacker to execute arbitrary Perl scripts on the server.
A race condition in the Apache Kafka Java producer clientβs buffer pool management can cause messages to be silently delivered to incorrect topics
A vulnerability has been identified in the graphical user interface (GUI) of HPE Aruba Networking Private 5G Core On-Prem that could allow an attacker to abuse an open redirect vulnerability in the login flow using a crafted URL
The Product Feed PRO for WooCommerce by AdTribes β Product Feeds for WooCommerce plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions 13
PraisonAI is a multi-agent teams system
The Vertex Addons for Elementor plugin for WordPress is vulnerable to Missing Authorization in all versions up to and including 1
Privilege escalationΒ in Apache Cassandra 5
The Advanced Members for ACF plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the create_crop function in all versions up to, and including, 1
PraisonAI is a multi-agent teams system
The MW WP Form plugin for WordPress is vulnerable to Arbitrary File Move/Read in all versions up to and including 5
ChurchCRM is an open-source church management system
ChurchCRM is an open-source church management system
ChurchCRM is an open-source church management system
ChurchCRM is an open-source church management system
ChurchCRM is an open-source church management system
ChurchCRM is an open-source church management system
ChurchCRM is an open-source church management system
There is a memory corruption vulnerability due to an out-of-bounds read in mgcore_SH_25_3!aligned_free() in NI LabVIEW
ChurchCRM is an open-source church management system
ChurchCRM is an open-source church management system
FreeScout is a free help desk and shared inbox built with PHP's Laravel framework
kcp is a Kubernetes-like control plane for form-factors and use-cases beyond Kubernetes and container workloads
Dell Elastic Cloud Storage, version 3
Execution with Unnecessary Privileges (CWE-250) in Kibanaβs Fleet plugin debug route handlers can lead reading index data beyond their direct Elasticsearch RBAC scope via Privilege Abuse (CAPEC-122)
ChurchCRM is an open-source church management system
WWBN AVideo is an open source video platform
FTLDNS (pihole-FTL) provides an interactive API and also generates statistics for Pi-hole's Web interface
FTLDNS (pihole-FTL) provides an interactive API and also generates statistics for Pi-hole's Web interface
FTLDNS (pihole-FTL) provides an interactive API and also generates statistics for Pi-hole's Web interface
FTLDNS (pihole-FTL) provides an interactive API and also generates statistics for Pi-hole's Web interface
FTLDNS (pihole-FTL) provides an interactive API and also generates statistics for Pi-hole's Web interface
LORIS (Longitudinal Online Research and Imaging System) is a self-hosted web application that provides data- and project-management for neuroimaging research
Podman Desktop is a graphical tool for developing on containers and Kubernetes
ChurchCRM is an open-source church management system
ChurchCRM is an open-source church management system
LORIS (Longitudinal Online Research and Imaging System) is a self-hosted web application that provides data- and project-management for neuroimaging research
pyLoad is a free and open-source download manager written in Python
Improper Limitation of a Pathname to a Restricted Directory (CWE-22) in Logstash can lead to arbitrary file write and potentially remote code execution via Relative Path Traversal (CAPEC-139)
IBM Langflow Desktop 1
A vulnerability was detected in D-Link DIR-645 1
A vulnerability was identified in Tenda AC15 15
A flaw was found in libssh
mise manages dev tools like node, python, cmake, and terraform
IBM Verify Identity Access Container 11
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 16
pyLoad is a free and open-source download manager written in Python
Addressable is an alternative implementation to the URI implementation that is part of Ruby's standard library
IBM Tivoli Netcool Impact 7
A flaw was found in Open Cluster Management (OCM), the technology underlying Red Hat Advanced Cluster Management (ACM)
Nokia MantaRay NM is vulnerable to an OS command injection vulnerability due to improper neutralization of special elements used in an OS command in Log Search application
OpenObserve is a cloud-native observability platform
NVIDIA Triton Inference Server contains a vulnerability where insufficient input validation and a large number of outputs could cause a server crash
NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request to the server
NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request to the server
NVIDIA Triton Inference Server contains a vulnerability where an attacker could cause a server crash by sending a malformed request header to the server
SQL Injection vulnerability exists in MATCHA INVOICE 2
Tinyproxy through 1
Strawberry GraphQL is a library for creating GraphQL APIs
Strawberry GraphQL is a library for creating GraphQL APIs
SoftEtherVPN is a an open-source cross-platform multi-protocol VPN Program
A heap-based buffer overflow vulnerability exists in the x3f_load_huffman functionality of LibRaw Commit d20315b
ASDA-Soft Stack-based Buffer Overflow Vulnerability
ChurchCRM is an open-source church management system
Incorrect boundary conditions, integer overflow in the Graphics: Text component
Incorrect boundary conditions in the Graphics: WebGPU component
Windmill versions 1
PolarLearn is a free and open-source learning program
ChurchCRM is an open-source church management system
InvenTree is an Open Source Inventory Management System
libp2p-rust is the official rust language Implementation of the libp2p networking stack
Command injection in alerts in CoolerControl/coolercontrold <4
An integer overflow vulnerability exists in the deflate_dng_load_raw functionality of LibRaw Commit 8dc68e2
An integer overflow vulnerability exists in the uncompressed_fp_dng_load_raw functionality of LibRaw Commit 8dc68e2
An issue that allowed all-organization administrators to promote accounts to superuser status has been resolved
Tandoor Recipes is an application for managing recipes, planning meals, and building shopping lists
File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory
ChurchCRM is an open-source church management system
ChurchCRM is an open-source church management system
RedwoodSDK is a server-first React framework
CI4MS is a CodeIgniter 4-based CMS skeleton that delivers a production-ready, modular architecture with RBAC authorization and theme support
CI4MS is a CodeIgniter 4-based CMS skeleton that delivers a production-ready, modular architecture with RBAC authorization and theme support
Nokia MantaRay NM is vulnerable to an OS command injection vulnerability due to improper neutralization of special elements used in an OS command in Symptom Collector application
ChurchCRM is an open-source church management system
There is a memory corruption vulnerability due to an out-of-bounds write when loading a corrupted LVLIB file in NI LabVIEW
There is a memory corruption vulnerability due to an out-of-bounds write when loading a corrupted LVCLASS file in NI LabVIEW
There is a memory corruption vulnerability due to an out-of-bounds write in ResFileFactory::InitResourceMgr() in NI LabVIEW
There is a memory corruption vulnerability due to an out-of-bounds read in sentry_transaction_context_set_operation() in NI LabVIEW
Fleet is open source device management software
parseusbs before 1
parseusbs before 1
MemProcFS before 5
UAC (Unix-like Artifacts Collector) before 3
Incorrect Authorization (CWE-863) in Kibana can lead to information disclosure via Privilege Abuse (CAPEC-122)
Stored XSS in log viewer in CoolerControl/coolercontrol-ui <4
An issue was discovered in 6
libp2p-rust is the official rust language Implementation of the libp2p networking stack
text-generation-webui is an open-source web interface for running Large Language Models
An issue was discovered in 6
text-generation-webui is an open-source web interface for running Large Language Models
Drizzle is a modern TypeScript ORM
FastFeedParser is a high performance RSS, Atom and RDF parser