THREAT OPS › Threat News
Threat Intelligence News
11581 reports from 110+ open cyber-threat-intelligence sources — APT activity, malware, vulnerabilities and campaigns, newest first.
- ZDI-26-627: Backblaze Personal Computer Backup bztransmit Link Following Denial-of-Service Vulnerabilityzdi_published · 2026-09-09
- ZDI-26-626: Backblaze Personal Computer Backup bzfilelist Link Following Denial-of-Service Vulnerabilityzdi_published · 2026-09-09
- ZDI-26-625: Backblaze Personal Computer Backup bzserv Link Following Denial-of-Service Vulnerabilityzdi_published · 2026-09-09
- ZDI-26-624: Backblaze Personal Computer Backup bzbackup Link Following Denial-of-Service Vulnerabilityzdi_published · 2026-09-09
- ZDI-26-647: VMware Workstation VMXNET3 TSO Segmentation Integer Overflow Local Privilege Escalation Vulnerabilityzdi_published · 2026-09-09
- ZDI-26-644: Oracle VirtualBox VMSVGA Race Condition Local Privilege Escalation Vulnerabilityzdi_published · 2026-09-09
- ZDI-26-643: Oracle VirtualBox VMSVGA Out-Of-Bounds Read Information Disclosure Vulnerabilityzdi_published · 2026-09-09
- ZDI-26-642: Oracle VirtualBox IDisplay Out-Of-Bounds Read Local Privilege Escalation Vulnerabilityzdi_published · 2026-09-09
- ZDI-26-641: Oracle VirtualBox VirtioSCSI Out-Of-Bounds Read Information Disclosure Vulnerabilityzdi_published · 2026-09-09
- ZDI-26-640: Oracle VirtualBox VirtioSCSI Uninitialized Memory Information Disclosure Vulnerabilityzdi_published · 2026-09-09
- ZDI-26-639: Oracle VirtualBox VMSVGA Heap-based Buffer Overflow Local Privilege Escalation Vulnerabilityzdi_published · 2026-09-09
- ZDI-26-638: Oracle Outside In Technology WPS File Parsing Memory Corruption Remote Code Execution Vulnerabilityzdi_published · 2026-09-09
- ZDI-26-637: Oracle Outside In Technology GEM File Parsing Integer Overflow Remote Code Execution Vulnerabilityzdi_published · 2026-09-09
- ZDI-26-636: Oracle Outside In Technology PostScript File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerabilityzdi_published · 2026-09-09
- ZDI-26-635: Oracle Outside In Technology PDF File Parsing Integer Overflow Remote Code Execution Vulnerabilityzdi_published · 2026-09-09
- ZDI-26-633: GIMP PSP File Parsing Integer Overflow Remote Code Execution Vulnerabilityzdi_published · 2026-09-09
- ZDI-26-631: NI LabVIEW VI File Parsing Out-Of-Bounds Read Information Disclosure Vulnerabilityzdi_published · 2026-09-09
- ZDI-26-630: NI LabVIEW VI File Parsing Integer Overflow Information Disclosure Vulnerabilityzdi_published · 2026-09-09
- [anubis] Gellibrand Support Services posted to leak siteransomware_live · 2026-09-09
- Microsoft Patches Record 974 Flaws, Including Two Exploited Windows Zero-Daysthehackernews · 2026-09-09
- N-able N-central Pre-Auth RCE Flaw Exploited in the Wildthehackernews · 2026-09-09
- A Practical Framework for Secure AI Adoption in Federal Civilian Agencieszscaler_threatlabz · 2026-09-09
- Microsoft Monthly Security Update (September 2026)hkcert · 2026-09-09
- Android Multiple Vulnerabilitieshkcert · 2026-09-09
- Adobe Monthly Security Update (September 2026)hkcert · 2026-09-09
- Fortinet Products Multiple Vulnerabilitieshkcert · 2026-09-09
- Mozilla Firefox Denial of Service Vulnerabilityhkcert · 2026-09-09
- libpcap 1.10.7 fixes 7 vulnerabilitiesoss_sec · 2026-09-09
- Security fixes in libfuse-3.18.3oss_sec · 2026-09-09
- Russian National Extradited to US to Face Bank Account Takeover Chargesduo_decipher · 2026-09-09
- [CISA KEV] CVE-2026-19490 — Citrix NetScaler: Citrix NetScaler Authentication Bypass Using an Alternate Path or Channel Vulnerabilitycisa_kev · 2026-09-09
- [CISA KEV] CVE-2026-87491 — Google Chromium V8: Google Chromium V8 Out of Bounds Write Vulnerabilitycisa_kev · 2026-09-09
- [CISA KEV] CVE-2025-25249 — Fortinet Multiple Products: Fortinet Multiple Products Heap-based Buffer Overflow Vulnerabilitycisa_kev · 2026-09-09
- [CISA KEV] CVE-2026-20079 — Cisco Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall Management: Cisco Firewall Management Center Authentication Bypass Using an Alternate Path or Channel Vulnerabilitycisa_kev · 2026-09-09
- Microsoft Patch Tuesday for September 2026 — Snort rules and prominent vulnerabilitiestalos · 2026-09-08
- Microsoft Plugs Nearly 1,000 Security Holeskrebs · 2026-09-08
- Patch Tuesday - September 2026rapid7 · 2026-09-08
- CVE-2026-65181: Apache Impala: RCE via External Data Source Class Loadingoss_sec · 2026-09-08
- CVE-2026-57866: Apache Impala: Secrets Exfiltration via SSRFoss_sec · 2026-09-08
- CVE-2026-56207: Apache Impala: SAML authentication bypass via forged bearer tokenoss_sec · 2026-09-08
- CVE-2026-54048: Apache Impala: Avro Schema URL Server-Side Request Forgeryoss_sec · 2026-09-08
- Fwd: Tor Project Forum: Security Release 0.4.9.12oss_sec · 2026-09-08
- [GHSA] GHSA-7hgx-277f-7vmg (medium) — n8n: Agent Workflow Tool Bypasses Sub-Workflow Caller Policygithub_advisories · 2026-09-08
- [GHSA] GHSA-wmmp-3585-3rmp (medium) — Nodemailer: IDN/Punycode domain allow-list bypass leads to email delivery to an attacker-controlled domaingithub_advisories · 2026-09-08
- [GHSA] GHSA-2x7j-588g-ccc2 (high) — Nodemailer: Quadratic (O(n²)) time complexity in addressparser allows remote denial of service via a crafted address listgithub_advisories · 2026-09-08
- [GHSA] GHSA-cc9r-2j5m-2m83 (medium) — Nodemailer: Recipient-domain validation bypass via RFC 5322 comment mis-parsing leads to email delivery to an attacker-controlled domaingithub_advisories · 2026-09-08
- Re: Linux kernel LPEs: ZcopyReaper (CVE-2026-43502) and 20 moreoss_sec · 2026-09-08
- [GHSA] GHSA-2q42-4q24-7rgv (high) — OpenAPI3 version value escapes `emitterOutputDir` and overwrites YAML/JSON outside the output treegithub_advisories · 2026-09-08
- [GHSA] GHSA-wc9g-mqfw-jrwm (high) — multer vulnerable to Denial of Service via crafted multipart field namesgithub_advisories · 2026-09-08
- [GHSA] GHSA-qfvm-cv95-jqjf (high) — multer vulnerable to Denial of Service via file descriptor leak on aborted uploadsgithub_advisories · 2026-09-08
- [GHSA] GHSA-qvfw-j98x-7q72 (low) — multer vulnerable to file size limit bypass via async fileFilter race conditiongithub_advisories · 2026-09-08
- [GHSA] GHSA-535w-7cp7-47q4 (high) — multer vulnerable to Denial of Service via oversized array index in field namesgithub_advisories · 2026-09-08
- [GHSA] GHSA-jxfw-x594-9x9m (medium) — morgan vulnerable to Log Forging via unescaped Unicode line separatorsgithub_advisories · 2026-09-08
- [GHSA] GHSA-96p9-rh4f-92cf (high) — Windows ML CLI: CORS misconfig enables localhost RCEgithub_advisories · 2026-09-08
- [GHSA] GHSA-65fr-j4p9-vc33 (high) — mongodb: Reject "." and NUL bytes in database and collection namesgithub_advisories · 2026-09-08
- [GHSA] GHSA-26w7-cxv4-gfx2 (critical) — Astro: Remote code execution through AVIF image optimizationgithub_advisories · 2026-09-08
- [GHSA] GHSA-376h-93r7-7g6f (medium) — Astro: Authorization bypass from missing path-segment boundary check when stripping the configured basegithub_advisories · 2026-09-08
- [GHSA] GHSA-rvx4-ffvw-m9q3 (high) — Composer arbitrary command execution via a malicious package's Perforce source URLgithub_advisories · 2026-09-08
- [GHSA] GHSA-rgj7-g3m4-5g8c (high) — sharp: Vulnerabilities in libheif: GHSA-g89c-p67h-r497 and GHSA-2jg2-4ch7-h545github_advisories · 2026-09-08
- [GHSA] GHSA-2883-xcg3-v3hh (high) — js-yaml: maxTotalMergeKeys does not limit CPU use for empty merge sourcesgithub_advisories · 2026-09-08
- [GHSA] GHSA-q97c-8qh3-fpc6 (medium) — phpseclib — non-constant-time X25519 scalar multiplication permits full private-key recoverygithub_advisories · 2026-09-08
- [GHSA] GHSA-j95f-988m-3j2f (high) — Tiptap: Quadratic ReDoS in block and inline Markdown attribute parsinggithub_advisories · 2026-09-08
- [GHSA] GHSA-gqvv-2mrq-wpjv (medium) — Hono: Incomplete fix for CVE-2026-39408: `toSSG()` still writes files outside the output directorygithub_advisories · 2026-09-08
- [GHSA] GHSA-g6gw-c38x-mqfc (medium) — Hono: Unbounded dot-notation nesting in `parseBody()` can cause memory exhaustiongithub_advisories · 2026-09-08
- [GHSA] GHSA-crvj-82cr-hjcx (medium) — Hono: Query parser reads parameters after the URL fragment, causing cache-key and proxy interpretation differentialsgithub_advisories · 2026-09-08
- [GHSA] GHSA-2v4p-qf9q-27wj (high) — gRPC-Go xDS servers: Denial of Service (DoS) via crash due to missing `:authority` and `Host` headersgithub_advisories · 2026-09-08
- [GHSA] GHSA-2xp9-vwfh-vxw4 (critical) — Next.js: Unauthenticated Remote Code Execution in Image Optimization API when AVIF files are usedgithub_advisories · 2026-09-08
- [GHSA] GHSA-w27v-7q3p-w38r (high) — SVGO: removeScripts allows executable links through namespace and control-character bypassesgithub_advisories · 2026-09-08
- [GHSA] GHSA-4vpr-x523-8j87 (medium) — SVGO: removeScripts incompletely sanitizes executable HTML in SVG foreignObject elementsgithub_advisories · 2026-09-08
- [NVD] CVE-2026-82001 (MEDIUM 5.5) — Acrobat Reader is affected by an Uncontrolled Resource Consumption vulnerability that could lead to application denial-of-service. An attacker could exploit this vulnerability to exhaust system resources, resulting in an application denial-of-service condition. Exploitation of thnvd · 2026-09-08
- [NVD] CVE-2026-81982 (MEDIUM 5.5) — Acrobat Reader is affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to disclose sensitive information. Exploitation of this issue requires user interaction in that a victim must open a nvd · 2026-09-08
- [NVD] CVE-2026-81977 (MEDIUM 5.5) — Acrobat Reader is affected by an Integer Underflow (Wrap or Wraparound) vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to disclose sensitive information. Exploitation of this issue requires user interaction in that anvd · 2026-09-08
- [GHSA] GHSA-8m3c-c648-2xjj (medium) — Nodemailer: resolveContent() on a MailMessage bypasses disableFileAccess/disableUrlAccess when called with the legacy signaturegithub_advisories · 2026-09-08
- [GHSA] GHSA-c7q8-3ch8-vqpv (high) — xmldom: Processing Instruction Target Injection Bypasses requireWellFormedgithub_advisories · 2026-09-08
- [GHSA] GHSA-jxjr-3g7g-3944 (high) — xmldom: requireWellFormed element/attribute name validation is bypassable via an embedded line terminatorgithub_advisories · 2026-09-08
- [GHSA] GHSA-27p8-2357-5qqv (high) — xmldom: DocType `name` Injection Bypasses requireWellFormedgithub_advisories · 2026-09-08
- [GHSA] GHSA-3px3-54cx-rmw9 (high) — xmldom: Creation-time XML Name/QName validation is bypassable via an embedded line terminator, allowing injection on the default serialization pathgithub_advisories · 2026-09-08
- [GHSA] GHSA-vr34-hp96-76pp (high) — xmldom: requireWellFormed DocType publicId/systemId validation is bypassable via an embedded line terminatorgithub_advisories · 2026-09-08
- [GHSA] GHSA-6h8r-xr42-gp59 (medium) — xmldom: Parser silently accepts a not-well-formed end tag whose name is followed by a line break and trailing contentgithub_advisories · 2026-09-08
- [GHSA] GHSA-8344-3jmq-59r6 (high) — xmldom: Quadratic-time attribute deduplicationgithub_advisories · 2026-09-08
- [GHSA] GHSA-x4fp-j954-r2f4 (high) — xmldom: End-tag Whitespace-Trim Regex ReDoS — quadratic backtracking in the 0.8.x end-tag parsergithub_advisories · 2026-09-08
- [GHSA] GHSA-965w-775f-mr7g (high) — xmldom: Quadratic-memory consumptiongithub_advisories · 2026-09-08
- [GHSA] GHSA-93r5-fhx6-vmg9 (high) — xmldom: Quadratic-time parsing via the malformed-input recovery path — `parseElementStartPart` re-scan and `normalize()` adjacent-text mergegithub_advisories · 2026-09-08
- [GHSA] GHSA-6mj3-qw4j-hgrw (high) — xmldom: HTML raw-text closing-tag case mismatch causes output amplificationgithub_advisories · 2026-09-08
- [GHSA] GHSA-w6f5-v2h6-g786 (critical) — Predis: Redis command injection and denial of service via CRLF smuggling in pipelined commands on aggregate connectionsgithub_advisories · 2026-09-08
- [GHSA] GHSA-fxf7-vhh8-7vpq (critical) — CakePHP: FunctionsBuilder::jsonValue() vulerable to SQL injection with PostgresDrivergithub_advisories · 2026-09-08
- [GHSA] GHSA-2qh5-382h-3jpc (high) — CakePHP: SmtpTransport vulnerable to CRLF header injectiongithub_advisories · 2026-09-08
- [GHSA] GHSA-6w3j-5fw6-r9vr (low) — joi: Prototype pollution via a `__proto__` language key in custom messagesgithub_advisories · 2026-09-08
- [GHSA] GHSA-2wm5-q62r-hmrv (medium) — Colord: Slow rejection of oversized malformed color stringsgithub_advisories · 2026-09-08
- [GHSA] GHSA-p293-qw3h-jr36 (critical) — Next.js: Unauthenticated Remote Code Execution on windows-hosted serversgithub_advisories · 2026-09-08
- [GHSA] GHSA-gg4h-3hg2-grpc (low) — joi: object().rename() with a template target can set the validated object's prototypegithub_advisories · 2026-09-08
- [GHSA] GHSA-jrc7-96c5-q579 (critical) — MapLibre GL JS: XSS Sanitizer Bypass in DOM.sanitize() via Live NamedNodeMap Removal Skipgithub_advisories · 2026-09-08
- [GHSA] GHSA-qc2q-p7wx-3px3 (medium) — gRPC-Go: xDS RBAC HTTP Filter bypass via mixed-case Header Matching and gRFC A41 validation evasiongithub_advisories · 2026-09-08
- [GHSA] GHSA-8xx6-hgc6-gc2m (high) — HTTPX2: Streaming response decompression does not bound peak memory (decompression amplification)github_advisories · 2026-09-08
- [play] Red Star Oil posted to leak siteransomware_live · 2026-09-08
- [GHSA] GHSA-82fw-gwwq-j7x9 (medium) — Vitest: Path Traversal / Arbitrary File Read via @vitest/mocker Redirect Mockgithub_advisories · 2026-09-08
- [GHSA] GHSA-pf96-p4fj-6566 (medium) — HTTPX2: Conflicting Content-Length and Transfer-Encoding headers can be auto-generatedgithub_advisories · 2026-09-08
- [play] GT Distributors posted to leak siteransomware_live · 2026-09-08
- [GHSA] GHSA-h4x7-gw46-3wm6 (medium) — HTTPX2: Multipart part header injection via unvalidated file Content-Type and custom headersgithub_advisories · 2026-09-08
- [GHSA] GHSA-f2fp-rgf2-35cp (medium) — HTTPX2: Quadratic SSE line buffering can cause CPU denial of servicegithub_advisories · 2026-09-08