THREAT OPS › Threat News
Threat Intelligence News
12224 reports from 110+ open cyber-threat-intelligence sources — APT activity, malware, vulnerabilities and campaigns, newest first.
- [NVD] CVE-2025-66024 (CRITICAL 9.0) — The XWiki blog application allows users of the XWiki platform to create and manage blog posts. Versions starting with 9.15 and prior to 9.15.7 are vulnerable to Stored Cross-Site Scripting (XSS) via the Blog Post Title. The vulnerability arises because the post title is injected nvd · 2026-03-04
- [NVD] CVE-2026-20079 (CRITICAL 10.0) — A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to bypass authentication and execute script files on an affected device to obtain root access to the underlying operating system. nvd · 2026-03-04
- [NVD] CVE-2026-20068 (MEDIUM 5.8) — Multiple Cisco products are affected by a vulnerability in the Snort 3 detection engine that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to restart, resulting in an interruption of packet inspection. This vulnerability is due to incompnvd · 2026-03-04
- [NVD] CVE-2026-20067 (MEDIUM 5.8) — Multiple Cisco products are affected by a vulnerability in the Snort 3 detection engine that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to restart, resulting in an interruption of packet inspection. This vulnerability is due to nvd · 2026-03-04
- [NVD] CVE-2026-20066 (MEDIUM 5.8) — Multiple Cisco products are affected by a vulnerability in the Snort 3 Detection Engine that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to restart, resulting in an interruption of packet inspection. This vulnerability is due to an errnvd · 2026-03-04
- [NVD] CVE-2026-20065 (MEDIUM 5.8) — Multiple Cisco products are affected by a vulnerability in the Snort 3 Detection Engine that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to restart, resulting in an interruption of packet inspection. This vulnerability is due to an errnvd · 2026-03-04
- [NVD] CVE-2026-20058 (MEDIUM 5.8) — Multiple Cisco products are affected by vulnerabilities in the Snort 3 VBA feature that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to crash. These vulnerabilities are due to improper error checking when decompressing VBA data. An attanvd · 2026-03-04
- [NVD] CVE-2026-20057 (MEDIUM 5.8) — Multiple Cisco products are affected by a vulnerability in the Snort 3 Visual Basic for Applications (VBA) feature which could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to crash. This vulnerability is due to lack of proper erronvd · 2026-03-04
- [NVD] CVE-2026-20054 (MEDIUM 5.8) — Multiple Cisco products are affected by a vulnerability in the Snort 3 VBA feature that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to crash. This vulnerability is due to improper error checking when decompressing VBA data. An atnvd · 2026-03-04
- [NVD] CVE-2026-20053 (MEDIUM 5.8) — Multiple Cisco products are affected by a vulnerability in the Snort 3 VBA feature that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to crash. This vulnerability is due to improper range checking when decompressing VBA data, which is usnvd · 2026-03-04
- [NVD] CVE-2026-20052 (MEDIUM 5.8) — A vulnerability in the memory management handling for the Snort 3 Detection Engine of Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to restart. This vulnerability is due to a logic erronvd · 2026-03-04
- [NVD] CVE-2026-20044 (MEDIUM 6.0) — A vulnerability in the lockdown mechanism of Cisco Secure Firewall Management Center (FMC) Software could allow an authenticated, local attacker to perform arbitrary commands as root. This vulnerability is due to insufficient restrictions on remediation modules while in lockdonvd · 2026-03-04
- [NVD] CVE-2026-20007 (MEDIUM 5.8) — A vulnerability in the Snort 2 and Snort 3 deep packet inspection of Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass configured Snort rules and allow traffic onto the network that should have been dropped. This vulnnvd · 2026-03-04
- [NVD] CVE-2026-20006 (MEDIUM 5.8) — A vulnerability in the TLS cryptography functionality of the Snort 3 Detection Engine of Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to unexpectedly restart, resulting in a denial of sernvd · 2026-03-04
- [NVD] CVE-2026-20005 (MEDIUM 5.8) — Multiple Cisco products are affected by a vulnerability in the Snort 3 Detection Engine that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to restart, resulting in an interruption of packet inspection. This vulnerability is due to incompnvd · 2026-03-04
- [NVD] CVE-2025-12801 (MEDIUM 6.5) — A vulnerability was recently discovered in the rpc.mountd daemon in the nfs-utils package for Linux, that allows a NFSv3 client to escalate the privileges assigned to it in the /etc/exports file at mount time. In particular, it allows the client to access any subdirectory or subtnvd · 2026-03-04
- [NVD] CVE-2026-27446 (CRITICAL 9.8) — Missing Authentication for Critical Function (CWE-306) vulnerability in Apache Artemis, Apache ActiveMQ Artemis. An unauthenticated remote attacker can use the Core protocol to force a target broker to establish an outbound Core federation connection to an attacker-controlled rognvd · 2026-03-04
- [Breach] Woflow — 447,593 accounts exposedhibp_breaches · 2026-03-04
- [Breach] SUCCESS — 253,510 accounts exposedhibp_breaches · 2026-03-04
- Sometimes, You Can Just Feel The Security In The Design (Juniper Junos Evolved CVE-2026-21902 Pre-Auth RCE)watchtowr · 2026-03-03
- [NVD] CVE-2026-20801 (MEDIUM 5.6) — Cleartext Transmission of Sensitive Information (CWE-319) in a component used in the Gallagher Hanwha VMS and Gallagher NxWitness VMS integrations allows unprivileged users with local network access to view live video streams. This issue affects all versions of Gallagher NxWnvd · 2026-03-03
- [NVD] CVE-2026-20757 (LOW 2.5) — Improper Locking vulnerability (CWE-667) in Gallagher Morpho integration allows a privileged operator to cause a limited denial-of-service in the Command Centre Server. This issue affects Command Centre Server: 9.40 prior to vEL9.40.1976(MR1), 9.30 prior to vEL9.30.3382 (MR4nvd · 2026-03-03
- [NVD] CVE-2025-47147 (MEDIUM 5.7) — Cleartext Storage of Sensitive Information (CWE-312) in the Command Centre Mobile Client on Android and iOS could allow an attacker with access to a logged-in Operator's mobile device to extract the session token and exploit access for a limited duration. This issue affects nvd · 2026-03-03
- [NVD] CVE-2026-0013 (HIGH 8.4) — In setupLayout of PickActivity.java, there is a possible way to start any activity as a DocumentsUI app due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.nvd · 2026-03-02
- [NVD] CVE-2026-0012 (MEDIUM 6.2) — In setHideSensitive of ExpandableNotificationRow.java, there is a possible contact name leak due due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.nvd · 2026-03-02
- [NVD] CVE-2026-0011 (HIGH 8.4) — In enableSystemPackageLPw of Settings.java, there is a possible way to prevent location access from working due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploinvd · 2026-03-02
- [NVD] CVE-2026-0010 (HIGH 8.4) — In onTransact of IDrmManagerService.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.nvd · 2026-03-02
- [NVD] CVE-2026-0008 (HIGH 8.4) — In multiple functions of FaceEnroll.kt, there is a possible privilege escalation due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.nvd · 2026-03-02
- VulHunt in Depth: Inside the Binary Vulnerability Analysis Frameworkbinarly · 2026-03-02
- [Breach] Ameriprise — 502,597 accounts exposedhibp_breaches · 2026-03-02
- Cultivating a robust and efficient quantum-safe HTTPSgoogle_security · 2026-02-27
- [NVD] CVE-2026-21660 (CRITICAL 9.8) — A Hardcoded Email Credentials Saved as Plaintext in Firmware (CWE-256: Plaintext Storage of a Password) vulnerability in Frick Controls Quantum HD version 10.22 and prior lead to unauthorized access, exposure of sensitive information, and potential misuse or system compromise Tnvd · 2026-02-27
- [NVD] CVE-2025-12150 (LOW 3.1) — A flaw was found in Keycloak’s WebAuthn registration component. This vulnerability allows an attacker to bypass the configured attestation policy and register untrusted or forged authenticators via submission of an attestation object with fmt: "none", even when the realm is confinvd · 2026-02-27
- JSAC2026 -Day 2-jpcert_blog · 2026-02-27
- Why 2026 is the Year to Upgrade to an Agentic AI SOCelastic_security · 2026-02-27
- Manage your Elastic security stack as code with the Elastic Stack Terraform providerelastic_security · 2026-02-27
- 2026-002: Multiple Vulnerabilities in Cisco Productscert_eu · 2026-02-26
- A Deep Dive into the GetProcessHandleFromHwnd APIproject_zero · 2026-02-26
- [NVD] CVE-2026-27830 (HIGH 8.0) — c3p0, a JDBC Connection pooling library, is vulnerable to attack via maliciously crafted Java-serialized objects and `javax.naming.Reference` instances. Several c3p0 `ConnectionPoolDataSource` implementations have a property called `userOverridesAsString` which conceptually reprenvd · 2026-02-26
- Buy A Help Desk, Bundle A Remote Access Solution? (SolarWinds Web Help Desk Pre-Auth RCE Chain(s))watchtowr · 2026-02-25
- [NVD] CVE-2026-27727 (CRITICAL 9.8) — mchange-commons-java, a library that provides Java utilities, includes code that mirrors early implementations of JNDI functionality, including support for remote `factoryClassLocation` values, by which code can be downloaded and invoked within a running application. If an attacknvd · 2026-02-25
- Staying One Step Ahead: Strengthening Android’s Lead in Scam Protectiongoogle_security · 2026-02-25
- [NVD] CVE-2026-27606 (CRITICAL 9.8) — Rollup is a module bundler for JavaScript. Versions prior to 2.80.0, 3.30.0, and 4.59.0 of the Rollup module bundler (specifically v4.x and present in current source) is vulnerable to an Arbitrary File Write via Path Traversal. Insecure file name sanitization in the core engine anvd · 2026-02-25
- Make The Most of Network Firewall Logs with Elastic Securityelastic_security · 2026-02-25
- 2026 GreyNoise State of the Edge Report: Where Attacks Concentrate and Defenses Fall Shortgreynoise_blog · 2026-02-24
- Apache ActiveMQ Exploit Leads to LockBit Ransomwaredfirreport · 2026-02-23
- [NVD] CVE-2026-25747 (HIGH 8.8) — Deserialization of Untrusted Data vulnerability in Apache Camel LevelDB component. The Camel-LevelDB DefaultLevelDBSerializer class deserializes data read from the LevelDB aggregation repository using java.io.ObjectInputStream without applying any ObjectInputFilter or class-loadnvd · 2026-02-23
- [NVD] CVE-2026-25896 (CRITICAL 9.3) — fast-xml-parser allows users to validate XML, parse XML to JS object, or build XML from JS object without C/C++ based libraries and no callback. From 4.1.3to before 5.3.5, a dot (.) in a DOCTYPE entity name is treated as a regex wildcard during entity replacement, allowing an attnvd · 2026-02-20
- How AI and the human advantage beat tomorrow’s threatsintel471 · 2026-02-20
- Vulnerability REsearch using VulHuntbinarly · 2026-02-20
- JSAC2026 -Day 1-jpcert_blog · 2026-02-20
- CVE-2026-20841: Arbitrary Code Execution in the Windows Notepadzdi_blog · 2026-02-19
- [NVD] CVE-2026-26278 (HIGH 7.5) — fast-xml-parser allows users to validate XML, parse XML to JS object, or build XML from JS object without C/C++ based libraries and no callback. In versions 4.1.3 through 5.3.5, the XML parser can be forced to do an unlimited amount of entity expansion. With a very small XML inpunvd · 2026-02-19
- Keeping Google Play & Android app ecosystems safe in 2025google_security · 2026-02-19
- [NVD] CVE-2026-25940 (HIGH 8.1) — jsPDF is a library to generate PDFs in JavaScript. Prior to 4.2.0, user control of properties and methods of the Acroform module allows users to inject arbitrary PDF objects, such as JavaScript actions. If given the possibility to pass unsanitized input to one of the following prnvd · 2026-02-19
- [NVD] CVE-2026-25755 (HIGH 8.1) — jsPDF is a library to generate PDFs in JavaScript. Prior to 4.2.0, user control of the argument of the `addJS` method allows an attacker to inject arbitrary PDF objects into the generated document. By crafting a payload that escapes the JavaScript string delimiter, an attacker canvd · 2026-02-19
- [NVD] CVE-2026-25535 (HIGH 7.5) — jsPDF is a library to generate PDFs in JavaScript. Prior to 4.2.0, user control of the first argument of the `addImage` method results in denial of service. If given the possibility to pass unsanitized image data or URLs to the `addImage` method, a user can provide a harmful GIF nvd · 2026-02-19
- [NVD] CVE-2025-12107 (HIGH 8.4) — The Velocity template engine, utilized by the affected product, accepts and processes template syntax without sufficient sanitization or validation of user-controlled input. This allows an authenticated administrator to inject arbitrary template syntax. Successful exploitation envd · 2026-02-19
- [NVD] CVE-2025-12821 (HIGH 8.8) — The NewsBlogger theme for WordPress is vulnerable to Cross-Site Request Forgery in versions 0.2.5.6 to 0.2.5.9. This is due to missing or incorrect nonce validation on the newsblogger_install_and_activate_plugin() function. This makes it possible for unauthenticated attackers tonvd · 2026-02-19
- [NVD] CVE-2026-2670 (HIGH 7.2) — A vulnerability was identified in Advantech WISE-6610-NB, WISE-6610-EB, WISE-6610-TB, WISE-6610-JB, WISE-6610-CB, WISE-6610-EL-NB, WISE-6610-EL-EB, WISE-6610-EL-TB, WISE-6610-EL-JB, WISE-6610-EL-CB, WISE-6610P-DEA, WISE-6610P-DNA and WISE-6610P-DTA 1.2.1_20251110. Affected is an nvd · 2026-02-18
- [NVD] CVE-2026-24708 (HIGH 8.2) — An issue was discovered in OpenStack Nova before 30.2.2, 31 before 31.2.1, and 32 before 32.1.1. By writing a malicious QCOW header to a root or ephemeral disk and then triggering a resize, a user may convince Nova's Flat image backend to call qemu-img without a format restrictionvd · 2026-02-18
- [NVD] CVE-2025-70152 (CRITICAL 9.8) — code-projects Community Project Scholars Tracking System 1.0 is vulnerable to SQL Injection in the admin user management endpoints /admin/save_user.php and /admin/update_user.php. These endpoints lack authentication checks and directly concatenate user-supplied POST parameters (fnvd · 2026-02-18
- [NVD] CVE-2025-70151 (HIGH 8.8) — code-projects Scholars Tracking System 1.0 allows an authenticated attacker to achieve remote code execution via unrestricted file upload. The endpoints update_profile_picture.php and upload_picture.php store uploaded files in a web-accessible uploads/ directory using the originanvd · 2026-02-18
- [NVD] CVE-2025-70148 (HIGH 7.5) — Missing authentication and authorization in print_membership_card.php in CodeAstro Membership Management System 1.0 allows unauthenticated attackers to access membership card data of arbitrary users via direct requests with a manipulated id parameter, resulting in insecure directnvd · 2026-02-18
- [NVD] CVE-2025-70147 (HIGH 7.5) — Missing authentication in /admin/student.php and /admin/teacher.php in ProjectWorlds Online Time Table Generator 1.0 allows remote attackers to obtain sensitive information (including plaintext password field values) via direct HTTP GET requests to these endpoints without a validnvd · 2026-02-18
- [NVD] CVE-2025-70146 (CRITICAL 9.1) — Missing authentication in multiple administrative action scripts under /admin/ in ProjectWorlds Online Time Table Generator 1.0 allows remote attackers to perform unauthorized administrative operations (e.g.,adding records, deleting records) via direct HTTP requests to affected envd · 2026-02-18
- [NVD] CVE-2025-70141 (CRITICAL 9.4) — SourceCodester Customer Support System 1.0 contains an incorrect access control vulnerability in ajax.php. The AJAX dispatcher does not enforce authentication or authorization before invoking administrative methods in admin_class.php based on the action parameter. An unauthenticanvd · 2026-02-18
- Speeding APT Attack Confirmation with Attack Discovery, Workflows, and Agent Builderelastic_security · 2026-02-18
- [NVD] CVE-2026-26369 (HIGH 8.8) — eNet SMART HOME server 2.2.1 and 2.3.1 contains a privilege escalation vulnerability due to insufficient authorization checks in the setUserGroup JSON-RPC method. A low-privileged user (UG_USER) can send a crafted POST request to /jsonrpc/management specifying their own username nvd · 2026-02-15
- [NVD] CVE-2026-23201 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: ceph: fix oops due to invalid pointer for kfree() in parse_longname() This fixes a kernel oops when reading ceph snapshot directories (.snap), for example by simply running `ls /mnt/my_ceph/.snap`. The variablnvd · 2026-02-14
- [NVD] CVE-2026-23191 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: ALSA: aloop: Fix racy access at PCM trigger The PCM trigger callback of aloop driver tries to check the PCM state and stop the stream of the tied substream in the corresponding cable. Since both check and stop nvd · 2026-02-14
- [NVD] CVE-2026-23137 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: of: unittest: Fix memory leak in unittest_data_add() In unittest_data_add(), if of_resolve_phandles() fails, the allocated unittest_data is not freed, leading to a memory leak. Fix this by using scope-based clnvd · 2026-02-14
- [NVD] CVE-2026-23111 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_tables: fix inverted genmask check in nft_map_catchall_activate() nft_map_catchall_activate() has an inverted element activity check compared to its non-catchall counterpart nft_mapelem_activate()nvd · 2026-02-13
- Multiple Threat Actors Rapidly Exploit React2Shell: A Case Study of Active Compromisejpcert_blog · 2026-02-13
- [NVD] CVE-2026-20677 (CRITICAL 9.0) — A race condition was addressed with improved handling of symbolic links. This issue is fixed in iOS 18.7.5 and iPadOS 18.7.5, iOS 26.3 and iPadOS 26.3, macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, macOS Tahoe 26.3, visionOS 26.3. A shortcut may be able to bypass sandbox restrictionnvd · 2026-02-11
- [NVD] CVE-2026-20627 (MEDIUM 5.5) — An issue existed in the handling of environment variables. This issue was addressed with improved validation. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, macOS Tahoe 26.3, visionOS 26.3, watchOS 26.3. An app may be able to access senvd · 2026-02-11
- [NVD] CVE-2026-20617 (HIGH 7.0) — A race condition was addressed with improved state handling. This issue is fixed in iOS 26.3 and iPadOS 26.3, macOS Sequoia 15.7.4, macOS Sonoma 14.8.4, macOS Tahoe 26.3, tvOS 26.3, visionOS 26.3, watchOS 26.3. An app may be able to gain root privileges.nvd · 2026-02-11
- [NVD] CVE-2025-69873 (LOW 2.9) — ajv (Another JSON Schema Validator) before 8.18.0 is vulnerable to Regular Expression Denial of Service (ReDoS) when the $data option is enabled. The pattern keyword accepts runtime data via JSON Pointer syntax ($data reference), which is passed directly to the JavaScript RegExp(nvd · 2026-02-11
- Scary Agent Skills: Hidden Unicode Instructions in Skills ...And How To Catch Themembracethered · 2026-02-11
- [NVD] CVE-2026-26007 (MEDIUM 6.5) — cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. Prior to 46.0.5, the public_key_from_numbers (or EllipticCurvePublicNumbers.public_key()), EllipticCurvePublicNumbers.public_key(), load_der_public_key() and load_pem_public_kenvd · 2026-02-10
- [NVD] CVE-2026-21349 (HIGH 7.8) — Lightroom Desktop versions 15.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.nvd · 2026-02-10
- [NVD] CVE-2026-21348 (MEDIUM 5.5) — Substance3D - Modeler versions 1.22.5 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user intnvd · 2026-02-10
- [NVD] CVE-2026-21355 (MEDIUM 5.5) — DNG SDK versions 1.7.1 2410 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user interaction invd · 2026-02-10
- [NVD] CVE-2026-21354 (MEDIUM 5.5) — DNG SDK versions 1.7.1 2410 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to cause the application to crash or become unresponsive. Exploitation of this isnvd · 2026-02-10
- [NVD] CVE-2026-21353 (HIGH 7.8) — DNG SDK versions 1.7.1 2410 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious finvd · 2026-02-10
- [NVD] CVE-2026-21352 (HIGH 7.8) — DNG SDK versions 1.7.1 2410 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.nvd · 2026-02-10
- [NVD] CVE-2026-21347 (HIGH 7.8) — Bridge versions 15.1.3, 16.0.1 and earlier are affected by an Integer Overflow or Wraparound vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a maliciousnvd · 2026-02-10
- [NVD] CVE-2026-21346 (HIGH 7.8) — Bridge versions 15.1.3, 16.0.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.nvd · 2026-02-10
- [NVD] CVE-2026-21345 (HIGH 7.8) — Substance3D - Stager versions 3.1.6 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the contexnvd · 2026-02-10
- [NVD] CVE-2026-21344 (HIGH 7.8) — Substance3D - Stager versions 3.1.6 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the contexnvd · 2026-02-10
- [NVD] CVE-2026-21343 (HIGH 7.8) — Substance3D - Stager versions 3.1.6 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the contexnvd · 2026-02-10
- [NVD] CVE-2026-21342 (HIGH 7.8) — Substance3D - Stager versions 3.1.6 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.nvd · 2026-02-10
- [NVD] CVE-2026-21341 (HIGH 7.8) — Substance3D - Stager versions 3.1.6 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.nvd · 2026-02-10
- The February 2026 Security Update Reviewzdi_blog · 2026-02-10
- [NVD] CVE-2026-21358 (MEDIUM 5.5) — InDesign Desktop versions 21.1, 20.5.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in application denial-of-service. An attacker could exploit this vulnerability to crash the application, causing disruption to services. Exploitation ofnvd · 2026-02-10
- [NVD] CVE-2026-21357 (HIGH 7.8) — InDesign Desktop versions 21.1, 20.5.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicinvd · 2026-02-10
- [NVD] CVE-2026-21351 (HIGH 7.8) — After Effects versions 25.6 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.nvd · 2026-02-10
- [NVD] CVE-2026-21350 (MEDIUM 5.5) — After Effects versions 25.6 and earlier are affected by a NULL Pointer Dereference vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to crash the application, causing disruption to services. Exploitation of this issue reqnvd · 2026-02-10
- [NVD] CVE-2026-21340 (MEDIUM 5.5) — Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user innvd · 2026-02-10
- [NVD] CVE-2026-21339 (MEDIUM 5.5) — Substance3D - Designer versions 15.1.0 and earlier are affected by an out-of-bounds read vulnerability that could lead to memory exposure. An attacker could leverage this vulnerability to disclose sensitive information stored in memory. Exploitation of this issue requires user innvd · 2026-02-10