Anwendungssicherheit
🟠 CVE-2026-11527: High Schwachstelle
Config::IniFiles versions before 3.001000 for Perl allow OS command injection and file overwrite via a 2-arg open() of the -file...
🟠 CVE-2026-5242: High Schwachstelle
Improper neutralization of formula elements in a CSV file vulnerability in MIA Technology Inc. Pizzy Library allows Code Injection. This...
🔴 CVE-2026-9862: Critical Schwachstelle
Fortra's Core Privileged Access Manager (BoKS) contains an OS command injection vulnerability in the boks_autoregisterd service. A remote attacker with network...
🔴 CVE-2026-11526: Critical Schwachstelle
GD versions before 2.86 for Perl allow OS command injection and file overwrite via a 2-arg open() of filename arguments...
🔴 CVE-2026-52704: Critical Schwachstelle
Improper Control of Generation of Code ('Code Injection') vulnerability in Edgar Rojas WooCommerce PDF Invoice Builder allows Remote Code Inclusion....
ANWENDUNGSSICHERHEIT
Langflow Vulnerability CVE-2026-5027 Exploited for Unauthenticated RCE
A high-severity security flaw in Langflow, an open-source low-code platform to build artificial intelligence (AI) applications, has come under active...
ANWENDUNGSSICHERHEIT
AI Broke Vulnerability Management. That’s Why CISOs Are Moving Budget to BAS.
For thirty years, vulnerability management ran on a buffer: the months between when a vulnerability was found and when someone...
🟡 CVE-2026-12210: Medium Schwachstelle
A vulnerability was detected in universal-tool-calling-protocol python-utcp 1.1.0. This affects an unknown function of the component utcp-gql/utcp-websocket. Performing a manipulation...
🟡 CVE-2026-12206: Medium Schwachstelle
A vulnerability was identified in Grit42 Grit up to 0.11.0. This issue affects the function Grit::Assays::DataTableEntity of the file modules/assays/backend/app/models/grit/assays/data_table_entity.rb...
🟡 CVE-2026-12188: Medium Schwachstelle
A vulnerability was detected in Grit42 Grit up to 0.11.0. Affected by this issue is some unknown functionality of the...