CVE-2020-7796
Synacor Zimbra Collaboration Suite (ZCS) Server-Side Request Forgery Vulnerability - Active in CISA KEV catalog.
Critical vulnerabilities, curated daily for security professionals
See how vulnerabilities affect your specific environment
CRS uses the System Security Context Vector (SSCV) Framework v1.0 to adjust CVSS scores based on your system's exposure level, network position, and business criticality. Learn more about SSCV Framework
Sunday's disclosures highlight near-maximum severity vulnerabilities in PostgreSQL array expressions (CVE-2026-30860, CVSS 9.9) and the WeKnora LLM Framework (CVE-2026-30861, CVSS 9.9), both enabling remote code execution. Critical CVE volume dropped 62% from the prior day to 5, while high-priority disclosures fell 19% to 81. Additional critical flaws affect the Wavlink NU516U1 router (CVE-2026-3703, CVSS 9.8), Soft Serve Git Server (CVE-2026-29191, CVSS 9.1), and Zitadel identity management (CVE-2026-29191, CVSS 9.3). Fifteen vulnerabilities have confirmed active exploitation, spanning legacy flaws in Zimbra, GitLab, Hikvision, and Apple products alongside newer issues in VMware Aria Operations and Google Chromium. No patches are currently available for Sunday's disclosed CVEs, requiring organizations to prioritize compensating controls and network segmentation.
Immediate action: Prioritize PostgreSQL, Wavlink router, Soft Serve Git Server, and Zitadel deployments for immediate risk assessment and apply network segmentation where direct patches are unavailable. Monitor vendor advisories for incoming patches on all five critical CVEs, and verify that signatures or mitigations exist for the 15 actively exploited vulnerabilities affecting Zimbra, GitLab, VMware, Chromium, and Apple products.
Synacor Zimbra Collaboration Suite (ZCS) Server-Side Request Forgery Vulnerability - Active in CISA KEV catalog.
TeamT5 ThreatSonar Anti-Ransomware Unrestricted Upload of File with Dangerous Type Vulnerability - Active in CISA KEV catalog.
Microsoft Windows Video ActiveX Control Remote Code Execution Vulnerability - Active in CISA KEV catalog.
Google Chrome is vulnerable to a "Use After Free" condition in its CSS engine, which could allow a remote attacker to execute arbitrary code via a crafted webpage.
GitLab Server-Side Request Forgery (SSRF) Vulnerability - Active in CISA KEV catalog.
RoundCube Webmail Deserialization of Untrusted Data Vulnerability - Active in CISA KEV catalog.
RoundCube Webmail Cross-site Scripting Vulnerability - Active in CISA KEV catalog.
FileZen is affected by a high-severity OS command injection vulnerability that allows a threat actor to execute arbitrary commands on the underlying operating system.
VMware Aria Operations contains a command injection vulnerability that could allow an attacker to execute arbitrary commands on the affected system.
A memory corruption vulnerability exists in memory allocation processes when handling specific alignments, potentially leading to arbitrary code execution or system instability.
Hikvision Multiple Products Improper Authentication Vulnerability - Active in CISA KEV catalog.
Rockwell Multiple Products Insufficient Protected Credentials Vulnerability - Active in CISA KEV catalog.
Apple Multiple products Use-After-Free Vulnerability - Active in CISA KEV catalog.
Apple Multiple Products Integer Overflow or Wraparound Vulnerability - Active in CISA KEV catalog.
Apple iOS and iPadOS Use-After-Free Vulnerability - Active in CISA KEV catalog.
A remote code execution vulnerability in WeKnora's database query functionality allows unauthenticated attackers to bypass SQL injection protections via PostgreSQL array expressions.
A remote out-of-bounds write vulnerability in the Wavlink NU516U1 router allows attackers to manipulate the ipaddr argument in /cgi-bin/login.cgi, potentially leading to full system compromise.
An unauthenticated remote code execution vulnerability in WeKnora allows attackers to bypass command validation using the -p flag in npx node, leading to complete system compromise.
An authenticated SSRF vulnerability in Soft Serve allows SSH users to force the server to make requests to internal IP addresses, potentially exposing private services.
A critical XSS vulnerability in the Zitadel login V2 interface's /saml-post endpoint could lead to unauthorized account takeovers.
The JS Archive List plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 6
The Easy PHP Settings plugin for WordPress is vulnerable to PHP Code Injection in all versions up to, and including, 1
CoreDNS is a DNS server that chains plugins
CoreDNS is a DNS server that chains plugins
The WooCommerce WordPress plugin from versions 5
The Paid Videochat Turnkey Site â HTML5 PPV Live Webcams plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 7
The ZIP Code Based Content Protection plugin for WordPress is vulnerable to SQL Injection in all versions up to, and including, 1
TimescaleDB is a time-series database for high-performance real-time analytics packaged as a Postgres extension
Locutus brings stdlibs of other programming languages to JavaScript for educational purposes
PinchTab is a standalone HTTP server that gives AI agents direct control over a Chrome browser
Net-Billetterie 2
DoceboLMS 1
Pedidos 1
Rmedia SMS 1
Alienor Web Libre 2
Silurus Classifieds Script 2
Data Center Audit 2
GPS Tracking System 2
Nominas 0
ServerZilla 1
PlayJoom 0
The Meta Box plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the 'ajax_delete_file' function in all versions up to, and including, 5
The WP App Bar plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'app-bar-features' parameter in all versions up to, and including, 1
Easyndexer 1
Galaxy Forces MMORPG 0
Facturation System 1
Zarf, an airgap native package manager for Kubernetes, contains a vulnerability that could compromise the integrity of package deployments in restricted environments.
A security flaw has been discovered in code-projects Simple Flight Ticket Booking System 1
A weakness has been identified in code-projects Simple Flight Ticket Booking System 1
The Mesa Python library for agent-based modeling contains a vulnerability that could allow for arbitrary code execution during the processing of simulation data.
Caddy is an extensible server platform that uses TLS by default
A vulnerability was found in Tenda FH451 1
A vulnerability was determined in Tenda FH451 1
A vulnerability was identified in Tenda FH451 1
Meneame English Pligg 5
Alive Parish 2
OOP CMS BLOG 1
pyLoad is a free and open-source download manager written in Python
A high-severity vulnerability has been identified in the DSA Study Hub educational web application, requiring immediate vendor-supplied updates.
UptimeFlare is a serverless uptime monitoring & status page solution, powered by Cloudflare Workers
Mongoose Web Server 6
Navtor NavBox exposes sensitive configuration and operational data due to missing authentication on HTTP API endpoints
EdTv 2 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the 'id' parameter
Snipe-IT versions prior to 8
OliveTin, a web interface for shell commands, contains a high-severity vulnerability that could lead to unauthorized command execution.
A high-severity vulnerability in the Flowise LLM flow builder could allow attackers to compromise customized large language model flows.
Wallos is an open-source, self-hostable personal subscription tracker
A high-severity vulnerability has been found in the WeKnora LLM framework, potentially impacting document understanding and semantic retrieval security.
A vulnerability was identified in UTT HiPER 810G up to 1
A security flaw has been discovered in UTT HiPER 810G up to 1
A weakness has been identified in UTT HiPER 810G up to 1
A security vulnerability in the H3C Magic B1 router up to version 100R004 could allow for unauthorized device access or control.
A high-severity vulnerability has been identified in the Wavlink WL-WN579X3-C router, specifically affecting firmware version 231124, potentially allowing for unauthorized system compromise.
A vulnerability in the Plane open-source project management tool allows for potential unauthorized actions, threatening the confidentiality of sensitive project data and organizational workflows.
Warranty Tracking System 11
A late-disclosure vulnerability in Zoom BitZoom 1 presents a significant security risk, potentially allowing for unauthorized access or execution within the application environment.
Gumbo CMS 0
A high-severity vulnerability has been disclosed in the Tina4 Stack 1, which could allow attackers to compromise web applications built on this framework.
Webiness Inventory 2
ZITADEL is an open source identity management platform
ZITADEL, an open-source identity management platform, is affected by a high-severity vulnerability that could compromise identity and access management (IAM) security.
Flowise is a drag & drop user interface to build a customized large language model flow
Backstage is an open framework for building developer portals
ZITADEL is an open source identity management platform
EverSync 0
AMPPS 2
Musicco 2
An Absolute Path Traversal vulnerability exists in Navtor NavBox
The WebSocket Application Programming Interface lacks restrictions on the number of authentication requests
The WebSocket Application Programming Interface lacks restrictions on the number of authentication requests
@hono/node-server allows running the Hono application on Node
Plane is an an open-source project management tool
express-rate-limit is a basic rate-limiting middleware for Express
Ghost is a Node
The WebSocket backend uses charging station identifiers to uniquely associate sessions but allows multiple endpoints to connect using the same session identifier
The WebSocket backend uses charging station identifiers to uniquely associate sessions but allows multiple endpoints to connect using the same session identifier
Kestra is an event-driven orchestration platform
A flaw has been found in Shy2593666979 AgentChat up to 2
A vulnerability was found in Totolink N300RH 6
A vulnerability was found in code-projects Simple Flight Ticket Booking System 1
Maitra 1