{"date_iso":"2026-10-10","date_human":"Saturday, October 10, 2026","generated_utc":"2026-10-10 12:57 UTC","read_minutes":5,"patch_tuesday":false,"top_stories":[{"title":"Three Teams Demonstrate Remote Hacks of Fully Patched Google Pixel 10 at Pwn2Own","link":"https://thehackernews.com/2026/10/three-teams-demonstrate-remote-hacks-of.html","reason":"Google","category":"News","sources":["Bleeping Computer","CCCS Alerts & Advisories","Cisco Talos","Infosecurity Magazine","Malwarebytes Labs","SecurityWeek","The Hacker News","The Register Security"],"coverage":8,"cve_ids":[],"summary":"Three research teams broke into Google's Pixel 10 on October 8 at Pwn2Own Ireland, a hacking contest in Cork whose rules require every target to be fully patched. The contest pays researchers to show working exploits\u2026","source":"The Hacker News","date_rel":"9 Oct","thumbnail":"https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEgqGob0G-EHmqSYe9ZFWu_Pqg2ZivxomC2c4TSsW_k2yx0eZClRf8rgYVhDJTUrrhyzKr8yQr00rjzvVCRc7EsZjELELmKTWVxzLLsvx0DV5Q0rLWGd1eczFcVKTIBweBiuxIpfnB9HnT-1_DPUpxqagt4sXvjLvPiY1bZOz36oJnXV84KoOHVW8ZYY8es/s1600/pwn2own.jpg","description":"Three research teams broke into Google's Pixel 10 on October 8 at Pwn2Own Ireland, a hacking contest in Cork whose rules require every target to be fully patched. The contest pays researchers to show working exploits and passes the flaws to the vendors. One of the three Pixel exploits earned Ikotas Labs $300,000, the contest's top prize, and made the team the overall winner. Trend Micro's Zero","related":[{"title":"Hackers abuse Google Ads, Bing redirects to push Claude ClickFix attacks","link":"https://www.bleepingcomputer.com/news/security/hackers-abuse-google-ads-bing-redirects-to-push-claude-clickfix-attacks/","source":"Bleeping Computer","date_rel":"16h ago"},{"title":"Google Domains Impacted by Recent ccTLD Hijacks","link":"https://www.securityweek.com/google-domains-impacted-by-recent-cctld-domain-hijacks/","source":"SecurityWeek","date_rel":"9 Oct"},{"title":"Google Pixel 10 Exploits Earned Hackers $560,000 at Pwn2Own","link":"https://www.securityweek.com/google-pixel-10-exploits-earned-hackers-560000-at-pwn2own/","source":"SecurityWeek","date_rel":"9 Oct"},{"title":"Attackers hijack country-code domains to impersonate Google and other services","link":"https://www.malwarebytes.com/blog/news/2026/10/attackers-hijack-country-code-domains-to-impersonate-google-and-other-services","source":"Malwarebytes Labs","date_rel":"8 Oct"},{"title":"Attackers Hijack Three ccTLDs to Obtain Google Certificates","link":"https://www.infosecurity-magazine.com/news/attackers-hijack-cctlds-obtain/","source":"Infosecurity Magazine","date_rel":"8 Oct"},{"title":"UAT-11985: AI-assisted event lures delivering real-time Google AitM phishing","link":"https://blog.talosintelligence.com/uat-11985/","source":"Cisco Talos","date_rel":"8 Oct"}]},{"title":"Microsoft Teams to Warn Users About Malicious Links Hidden in QR Codes","link":"https://cybersecuritynews.com/teams-qr-code-protection/","reason":"Microsoft","category":"News","sources":["Bleeping Computer","Cyber Security News","Graham Cluley","Huntress","The Hacker News"],"coverage":5,"cve_ids":[],"summary":"Microsoft is extending Teams security to detect malicious links hidden inside QR codes and warn users after a message has been delivered. The update adds QR code checks to existing Microsoft Defender for Office 365\u2026","source":"Cyber Security News","date_rel":"7h ago","thumbnail":"https://cybersecuritynews.com/wp-content/uploads/2026/10/Teams-QR-Code-Protection.webp","description":"Microsoft is extending Teams security to detect malicious links hidden inside QR codes and warn users after a message has been delivered. The update adds QR code checks to existing Microsoft Defender for Office 365 protections, giving users clearer warnings and security teams more data to investigate suspicious messages. According to Message Center notice MC1490905 , published on October 7, worldwide rollout begins in early October 2026 and is expected to finish by early November. The feature applies to organizations using Microsoft Teams with Defender for Office 365 and requires no separate\u2026","related":[{"title":"Attackers Exploit AhsayCBS Flaws to Deploy XMRig Miners Disguised as Microsoft Edge","link":"https://thehackernews.com/2026/10/attackers-exploit-ahsaycbs-flaws-to.html","source":"The Hacker News","date_rel":"9 Oct"},{"title":"Microsoft: Outdated Windows devices will stop receiving security updates","link":"https://www.bleepingcomputer.com/news/microsoft/microsoft-outdated-windows-devices-will-lose-security-protection-next-year/","source":"Bleeping Computer","date_rel":"9 Oct"},{"title":"U.S. Offers Up to $10 Million for Tips on Zhang Yu, Charged in HAFNIUM Hacks","link":"https://thehackernews.com/2026/10/us-offers-up-to-10-million-for-tips-on.html","source":"The Hacker News","date_rel":"8 Oct"},{"title":"Smashing Security podcast #487: Clippy\u2019s crypto comeback","link":"https://grahamcluley.com/smashing-security-podcast-487/","source":"Graham Cluley","date_rel":"7 Oct"},{"title":"Phishing Campaign Abuses Microsoft Power BI to Deploy Rogue RMMs","link":"https://www.huntress.com/blog/screenconnect-power-bi","source":"Huntress","date_rel":"7 Oct"}]},{"title":"Credential-Stealing GitHub Actions Workflows Planted in Tens of Thousands of Repositories","link":"https://thehackernews.com/2026/10/credential-stealing-github-actions.html","reason":"Github","category":"News","sources":["Bleeping Computer","CCCS Alerts & Advisories","Cyber Security News","The Hacker News"],"coverage":4,"cve_ids":[],"summary":"Cybersecurity researchers have disclosed details of an ongoing credential-theft campaign that has compromised two high-profile open-source maintainer accounts to push a malicious workflow into over 340 repositories\u2026","source":"The Hacker News","date_rel":"17h ago","thumbnail":"https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjoJXBEAVVijhwsYs32WSejvp0sG3ej-Qoi7Z6qHDp8rY5IZENkKOpexrbbU1BNyiCbbB0ZXHjEDL-UYqu7CDpPpoYLiGXkuLCZJTItgP5XeLD_Sb1galPzOGtrFZigEM5CGUbwi9gcL_-XCYY6NKu9j5FiakIWn5s66DZE-OjrLZO3sMGka3YNFvGUecJT/s1600/gitworm.jpg","description":"Cybersecurity researchers have disclosed details of an ongoing credential-theft campaign that has compromised two high-profile open-source maintainer accounts to push a malicious workflow into over 340 repositories. \"Using the account of Takashi Kitao, author of the 18,400-star game engine pyxel, the attacker pushed a malicious workflow to 27 repositories starting at 13:20 UTC,\" StepSecurity","related":[{"title":"New GhostAction Attack Compromises Hundreds of GitHub Repos to Steal Secrets","link":"https://cybersecuritynews.com/ghostaction-github-repo-attack/","source":"Cyber Security News","date_rel":"20h ago"},{"title":"FakeGit malware campaign returns with 17,610 malicious GitHub repos","link":"https://www.bleepingcomputer.com/news/security/fakegit-malware-campaign-returns-with-17-610-malicious-github-repos/","source":"Bleeping Computer","date_rel":"8 Oct"},{"title":"GitHub security advisory (AV26-1007)","link":"https://cyber.gc.ca/en/alerts-advisories/github-security-advisory-av26-1007","source":"CCCS Alerts & Advisories","date_rel":"7 Oct"}]},{"title":"One Prompt Could Hijack AWS AI Agents and Steal Cloud Credentials","link":"https://cybersecuritynews.com/agentcorruption-attack/","reason":"Amazon","category":"News","sources":["Cyber Security News","Malwarebytes Labs","The Register Security"],"coverage":3,"cve_ids":[],"summary":"A single prompt sent to a public-facing AI agent could have exposed every Amazon Bedrock AgentCore agent in the same AWS account and region, according to new research from Zenity Labs. The attack chain, named\u2026","source":"Cyber Security News","date_rel":"5h ago","thumbnail":"https://cybersecuritynews.com/wp-content/uploads/2026/10/AWS-AgentCorruption1.webp","description":"A single prompt sent to a public-facing AI agent could have exposed every Amazon Bedrock AgentCore agent in the same AWS account and region, according to new research from Zenity Labs. The attack chain, named AgentCorruption, gave the researchers access to private chats, source code, long-term memories, API keys, OAuth tokens, and secrets held in AWS Secrets Manager. Amazon Bedrock AgentCore is a managed service for building and running AI agents. Zenity found that an agent with a tool able to make web requests could be told to contact the local metadata endpoint at 169.254.169.254 . This\u2026","related":[{"title":"AWS AgentCore security undone by prompt requesting credentials","link":"https://www.theregister.com/security/2026/10/09/aws-agentcore-security-undone-by-prompt-requesting-credentials/5302436","source":"The Register Security","date_rel":"17h ago"},{"title":"Amazon has an uncomfortably personal profile on you","link":"https://www.malwarebytes.com/blog/news/2026/10/amazon-has-an-uncomfortably-personal-profile-on-you-check-yours-now","source":"Malwarebytes Labs","date_rel":"8 Oct"}]},{"title":"$10 million bounty offered for Chinese Hafnium hacker accused of Microsoft Exchange Server mega-attack","link":"https://www.bitdefender.com/en-us/blog/hotforsecurity/10-million-bounty-chinese-hafnium-hacker-microsoft-exchange-server-mega-attack","reason":"Exchange","category":"News","sources":["Graham Cluley","Microsoft Security","Tenable Blog"],"coverage":3,"cve_ids":["CVE-2026-50696"],"summary":"The US State Department is offering up to US $10 million for information about the whereabouts of Zhang Yu, a 44-year-old Chinese national who is accused of being a key figure in China's state-sponsored hacking group\u2026","source":"Graham Cluley","date_rel":"22h ago","thumbnail":"","description":"","related":[{"title":"CVE-2026-50696 Internet Key Exchange (IKE) Protocol Denial of Service Vulnerability","link":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-50696","source":"Microsoft Security","date_rel":"22h ago"},{"title":"Inside the Exchange Inspector: How Tenable uses OpenAI GPT cyber models to review open-source AI agents","link":"https://www.tenable.com/blog/tenable-openai-security-vetting-open-source-ai-agents-exchange-inspector","source":"Tenable Blog","date_rel":"8 Oct"}]},{"title":"Citrix Patches Critical NetScaler Flaw That Could Enable RCE in SAML Deployments","link":"https://thehackernews.com/2026/10/citrix-patches-critical-netscaler-flaw.html","reason":"Citrix","category":"News","sources":["Bleeping Computer","CCCS Alerts & Advisories","The Hacker News"],"coverage":3,"cve_ids":["CVE-2026-88771","CVE-2026-88772"],"summary":"Citrix has released patches for yet another critical security flaw impacting NetScaler ADC and NetScaler Gateway that could result in remote code execution or denial-of-service (DoS) under certain conditions\u2026","source":"The Hacker News","date_rel":"9 Oct","thumbnail":"https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEifRR7IQ4Ngqm8ANJ-DKwW60qeemJlrfrtvhaAwtpzW37_jAkbdctxJEqjw8k_m1KT32ryqoxa1dNYoEPG-E9xNwrbtXqbOjbzmgs3JM9RW68FZMNA8ky14QKTLpEfHop9A4xmXO46fxQaeXZMZzzMQ-qoIXLpMrr8Gbekn3cgNX5xc7bYvMRDYKjDeLf4o/s1600/cit.jpg","description":"Citrix has released patches for yet another critical security flaw impacting NetScaler ADC and NetScaler Gateway that could result in remote code execution or denial-of-service (DoS) under certain conditions. \"CVE-2026-107406 is a memory overflow vulnerability that may lead to remote code execution or denial-of-service under specific configuration conditions,\" Citrix said. The vulnerability","related":[{"title":"AL26-024 - Critical vulnerabilities affecting Citrix NetScaler ADC and NetScaler Gateway \u2013 CVE-2026-88771 and CVE-2026-88772 \u2013 Update 2","link":"https://cyber.gc.ca/en/alerts-advisories/al26-024-critical-vulnerabilities-affecting-citrix-netscaler-adc-netscaler-gateway-cve-2026-88771-cve-2026-88772","source":"CCCS Alerts & Advisories","date_rel":"18h ago"},{"title":"Citrix security advisory (AV26-1023)","link":"https://cyber.gc.ca/en/alerts-advisories/citrix-security-advisory-av26-1023","source":"CCCS Alerts & Advisories","date_rel":"23h ago"},{"title":"Citrix warns admins to patch new NetScaler RCE flaw immediately","link":"https://www.bleepingcomputer.com/news/security/citrix-warns-admins-to-patch-new-netscaler-rce-flaw-immediately/","source":"Bleeping Computer","date_rel":"9 Oct"}]},{"title":"Low-cost Android phones ship with residential proxy malware","link":"https://www.bleepingcomputer.com/news/security/low-cost-android-phones-ship-with-residential-proxy-malware/","reason":"Android","category":"News","sources":["Bleeping Computer","Malwarebytes Labs","SecurityWeek"],"coverage":3,"cve_ids":[],"summary":"A malware campaign dubbed 'Midnight Mimosa' has been discovered on low-cost Android smartphones that ship with malicious software embedded in their firmware, allowing attackers to silently install apps, perform ad\u2026","source":"Bleeping Computer","date_rel":"8 Oct","thumbnail":"","description":"A malware campaign dubbed 'Midnight Mimosa' has been discovered on low-cost Android smartphones that ship with malicious software embedded in their firmware, allowing attackers to silently install apps, perform ad fraud, and turn devices into residential proxies.","related":[{"title":"Pre-Baked Firmware Malware Hits Budget Android Devices in 150+ Countries","link":"https://www.securityweek.com/pre-baked-firmware-malware-hits-budget-android-devices-in-150-countries/","source":"SecurityWeek","date_rel":"9 Oct"},{"title":"Google issues Android security updates: who can get them and how","link":"https://www.malwarebytes.com/blog/bugs/2026/10/google-issues-android-security-updates-who-can-get-them-and-how","source":"Malwarebytes Labs","date_rel":"7 Oct"}]},{"title":"Recorded Future Introduces AI Infrastructure Indicator Lists, Strengthening AI Governance","link":"https://www.recordedfuture.com/blog/ai-infrastructure-indicator-lists","reason":"Teams","category":"Threat Intel","sources":["Cisco Security Advisories","Elastic Security Labs","Recorded Future Intelligence"],"coverage":3,"cve_ids":[],"summary":"Today, Recorded Future is announcing AI Infrastructure Indicator Lists , curated datasets for security teams to identify, monitor, and implement controls for AI-related network traffic. AI Infrastructure Indicator Lists\u2026","source":"Recorded Future Intelligence","date_rel":"9 Oct","thumbnail":"https://www.recordedfuture.com/blog/media_18b9919af199d602d793ebea612eaae05e7859101.png?width=1200&format=pjpg&optimize=medium","description":"Today, Recorded Future is announcing AI Infrastructure Indicator Lists , curated datasets for security teams to identify, monitor, and implement controls for AI-related network traffic. AI Infrastructure Indicator Lists are included for free for Recorded Future customers with a Cyber Operations license. Artificial intelligence has increasingly become enterprise infrastructure and organizations are now confronting unsanctioned tool use (also known as shadow AI), data exposure, and autonomous behavior that their controls cannot always see. Recorded Future's AI Infrastructure Indicator Lists\u2026","related":[{"title":"Cisco Meraki Security Hardening Release: October 2026","link":"https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-hardening-meraki-os-drbEX9GH?vs_f=Cisco%20Security%20Advisory%26vs_cat=Security%20Intelligence%26vs_type=RSS%26vs_p=Cisco%20Meraki%20Security%20Hardening%20Release:%20October%202026%26vs_k=1","source":"Cisco Security Advisories","date_rel":"8 Oct"},{"title":"Introducing AlertZero: Inbox zero for your alert queue","link":"https://www.elastic.co/security-labs/blog/ai-soc-automation-alertzero","source":"Elastic Security Labs","date_rel":"8 Oct"}]},{"title":"Why Apple Says Your Mac Is at Risk From AI | Threat Wire","link":"https://www.youtube.com/watch?v=RehNZHrGDhI","reason":"Apple","category":"Podcast","sources":["Cisco Talos","Hak5"],"coverage":2,"cve_ids":[],"summary":"Are AI agents becoming a cybersecurity threat? From fake AI-generated bug bounty submissions overwhelming Google's vulnerability rewards program to Apple's warning about AI agents accessing sensitive Mac data, this\u2026","source":"Hak5","date_rel":"21h ago","thumbnail":"https://i3.ytimg.com/vi/RehNZHrGDhI/hqdefault.jpg","description":"Are AI agents becoming a cybersecurity threat? From fake AI-generated bug bounty submissions overwhelming Google's vulnerability rewards program to Apple's warning about AI agents accessing sensitive Mac data, this week's ThreatWire explores how artificial intelligence is changing cybersecurity \u2014 and creating new security risks. Google has temporarily paused its open-source vulnerability rewards program, curl has shut down its bug bounty program, and Debian has announced more than 1,000 kernel CVEs. Meanwhile, Apple is tightening macOS Full Disk Access controls as concerns grow over\u2026","related":[{"title":"Microsoft, Adobe, Apple, and Foxit vulnerabilities","link":"https://blog.talosintelligence.com/microsoft-adobe-apple-and-foxit-vulnerabilities/","source":"Cisco Talos","date_rel":"7 Oct"}]},{"title":"CastleStealer Malware Uses Browser Protection Bypass and Remote Shell to Expand Attacker Access","link":"https://cybersecuritynews.com/castlestealer-malware/","reason":"Windows","category":"News","sources":["Cyber Security News","Microsoft Security"],"coverage":2,"cve_ids":["CVE-2026-62744","CVE-2026-68875","CVE-2026-68878"],"summary":"CastleStealer, an emerging C#-based information stealer, has added browser protection bypass and remote shell features that give its operators a wider path into compromised Windows systems. The newer malware samples can\u2026","source":"Cyber Security News","date_rel":"22h ago","thumbnail":"https://cybersecuritynews.com/wp-content/uploads/2026/10/CastleStealer-Malware-Uses-Browser-Protection-Bypass-and-Remote-Shell-to-Expand-Attacker-Access.webp","description":"CastleStealer, an emerging C#-based information stealer, has added browser protection bypass and remote shell features that give its operators a wider path into compromised Windows systems. The newer malware samples can collect browser data protected by Chromium\u2019s App-Bound Encryption, run commands on a victim device, download extra payloads, and move stolen information through small encrypted network transmissions rather than one large archive. Flashpoint\u2019s analysis shows that the malware is becoming more capable even though it has not yet reached the broad use seen with major established\u2026","related":[{"title":"CVE-2026-62744 Microsoft Windows Media Foundation Remote Code Execution Vulnerability","link":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-62744","source":"Microsoft Security","date_rel":"22h ago"},{"title":"CVE-2026-68875 Windows NTFS Remote Code Execution Vulnerability","link":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-68875","source":"Microsoft Security","date_rel":"22h ago"},{"title":"CVE-2026-68878 Windows Fast FAT Driver Elevation of Privilege Vulnerability","link":"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-68878","source":"Microsoft Security","date_rel":"22h ago"}]}],"worth_reading":[{"title":"Scans for Atlassian vulnerablity (CVE-2026-21589), (Wed, Oct 7th)","link":"https://isc.sans.edu/diary/rss/33406","reason":"Atlassian","category":"Research","sources":["CCCS Alerts & Advisories","Infosecurity Magazine","SANS Internet Storm Center"],"coverage":3,"cve_ids":["CVE-2026-21589"],"summary":"On October 5th, Atlassian published patches for multiple products to fix an \"Arbitrary File Access\" vulnerability [CVE-2026-21589]. An attacker can read arbitrary files in the web application's directory, potentially\u2026","source":"SANS Internet Storm Center","date_rel":"7 Oct","thumbnail":"","description":"On October 5th, Atlassian published patches for multiple products to fix an \"Arbitrary File Access\" vulnerability [CVE-2026-21589]. An attacker can read arbitrary files in the web application's directory, potentially exposing sensitive information such as configuration files.","related":[{"title":"Critical Flaw in Multiple Atlassian Products Exploited in the Wild","link":"https://www.infosecurity-magazine.com/news/critical-vulnerability-atlassian/","source":"Infosecurity Magazine","date_rel":"8 Oct"},{"title":"Atlassian security advisory (AV26-1002) - Update 1","link":"https://cyber.gc.ca/en/alerts-advisories/atlassian-security-advisory-av26-1002","source":"CCCS Alerts & Advisories","date_rel":"7 Oct"}]}],"kev_watch":[],"vuln_watch":[{"id":"CVE-2026-94503","vendor":"PX-lab","product":"Zombify","severity":"CRITICAL","score":10.0,"description":"Unrestricted Upload of File with Dangerous Type vulnerability in PX-lab Zombify zombify allows Upload a Web Shell to a Web Server.This issue affects Zombify: from n/a through 1.7.7.","cwe":"CWE-434","kev":false,"kev_action":"","kev_due":"","kev_added":"","epss":null,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H","fix":false,"fix_url":"","refs":["https://patchstack.com/database/wordpress/plugin/zombify/vulnerability/wordpress-zombify-plugin-1-7-7-arbitrary-file-upload-vulnerability?_s_id=cve"],"url":"https://cve.blackmesa.ca/?q=CVE-2026-94503"},{"id":"CVE-2026-108263","vendor":"iflytek","product":"astron-agent","severity":"CRITICAL","score":9.9,"description":"Astron Agent is an agentic workflow platform for building and running AI agents. Prior to 1.1.2, the default workflow code-node path through /console-api/workflow/code/run and /workflow/v1/run selects LocalExecutor in core/workflow/engine/n\u2026","cwe":"CWE-95","kev":false,"kev_action":"","kev_due":"","kev_added":"","epss":null,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H","fix":false,"fix_url":"","refs":["https://github.com/iflytek/astron-agent/commit/848daba03e5e045435863815be7ab6dfbcefc18f","https://github.com/iflytek/astron-agent/commit/ebf074a431e96da0ad9e0a56409d3d2da15eae36","https://github.com/iflytek/astron-agent/pull/1650"],"url":"https://cve.blackmesa.ca/?q=CVE-2026-108263"},{"id":"CVE-2026-85531","vendor":"Sipay Electronic Money and Payment Services Inc.","product":"OpenCart Virtual POS Module","severity":"CRITICAL","score":9.8,"description":"Improper verification of cryptographic signature vulnerability in Sipay Electronic Money and Payment Services Inc. OpenCart Virtual POS Module allows Signature Spoofing by Improper Validation.\n\nThis issue affects OpenCart Virtual POS Module\u2026","cwe":"CWE-347","kev":false,"kev_action":"","kev_due":"","kev_added":"","epss":null,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","fix":false,"fix_url":"","refs":["https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-1286"],"url":"https://cve.blackmesa.ca/?q=CVE-2026-85531"},{"id":"CVE-2026-86405","vendor":"Sipay Electronic Money and Payment Services Inc.","product":"PrestaShop Virtual POS Module","severity":"CRITICAL","score":9.8,"description":"Improper verification of cryptographic signature vulnerability in Sipay Electronic Money and Payment Services Inc. PrestaShop Virtual POS Module allows Signature Spoofing by Improper Validation.\n\nThis issue affects PrestaShop Virtual POS Mo\u2026","cwe":"CWE-347","kev":false,"kev_action":"","kev_due":"","kev_added":"","epss":null,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","fix":false,"fix_url":"","refs":["https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-1287"],"url":"https://cve.blackmesa.ca/?q=CVE-2026-86405"},{"id":"CVE-2026-100730","vendor":"Microsoft","product":"openPDC","severity":"CRITICAL","score":9.8,"description":"A service console interface on openPDC and openHistorian deserializes a client-supplied data structure. On systems using Windows Authentication, an attacker must already be authenticated to reach this function; on systems without Windows Au\u2026","cwe":"CWE-502","kev":false,"kev_action":"","kev_due":"","kev_added":"","epss":null,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","fix":false,"fix_url":"","refs":["https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-281-02.json","https://www.cisa.gov/news-events/ics-advisories/icsa-26-281-02"],"url":"https://cve.blackmesa.ca/?q=CVE-2026-100730"},{"id":"CVE-2026-105278","vendor":"Grid Protection Alliance","product":"openPDC (Docker image)","severity":"CRITICAL","score":9.8,"description":"The published Docker image for openPDC includes a fixed administrative credential with no forced change on first use. An attacker with network access to the management interface can authenticate using this credential and gain full administr\u2026","cwe":"CWE-798","kev":false,"kev_action":"","kev_due":"","kev_added":"","epss":null,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","fix":false,"fix_url":"","refs":["https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-281-02.json","https://www.cisa.gov/news-events/ics-advisories/icsa-26-281-02"],"url":"https://cve.blackmesa.ca/?q=CVE-2026-105278"},{"id":"CVE-2026-108107","vendor":"hotspotbilling","product":"phpnuxbill","severity":"CRITICAL","score":9.8,"description":"PHPNuxBill through 2025.3.20 contains an unauthenticated SQL injection vulnerability in the radius.php FreeRADIUS REST endpoint that interpolates request parameters into whereRaw() queries. Attackers can send crafted username, macAddr or na\u2026","cwe":"CWE-89","kev":false,"kev_action":"","kev_due":"","kev_added":"","epss":null,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","fix":false,"fix_url":"","refs":["https://github.com/hotspotbilling/phpnuxbill","https://github.com/hotspotbilling/phpnuxbill/blob/2025.3.13/radius.php#L277","https://github.com/hotspotbilling/phpnuxbill/security/advisories/GHSA-q8ch-r8cv-q579"],"url":"https://cve.blackmesa.ca/?q=CVE-2026-108107"},{"id":"CVE-2026-15340","vendor":"Savannah","product":"lwIP SMTP client","severity":"CRITICAL","score":9.8,"description":"lwIP SMTP client does not check the size of inputs, potentially allowing a buffer overflow.","cwe":"CWE-120","kev":false,"kev_action":"","kev_due":"","kev_added":"","epss":null,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","fix":false,"fix_url":"","refs":["https://github.com/cisagov/CSAF/blob/develop/csaf_files/OT/white/2026/icsa-26-279-02.json","https://www.cisa.gov/news-events/ics-advisories/icsa-26-279-02"],"url":"https://cve.blackmesa.ca/?q=CVE-2026-15340"},{"id":"CVE-2026-108474","vendor":"JetBrains","product":"Exposed","severity":"CRITICAL","score":9.8,"description":"In JetBrains Exposed before 1.5.1 sQL injection was possible via unescaped string arguments of several SQL functions","cwe":"CWE-89","kev":false,"kev_action":"","kev_due":"","kev_added":"","epss":null,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","fix":false,"fix_url":"","refs":["https://www.jetbrains.com/privacy-security/issues-fixed/"],"url":"https://cve.blackmesa.ca/?q=CVE-2026-108474"},{"id":"CVE-2026-104732","vendor":"WordPress","product":"Advanced IP Blocker","severity":"CRITICAL","score":9.8,"description":"The Advanced IP Blocker plugin for WordPress is vulnerable to Authentication Bypass in all versions up to, and including, 8.13.13 The vulnerability exists because `handle_login_action()` performs no server-side check \u2014 via transient, sessio\u2026","cwe":"CWE-287","kev":false,"kev_action":"","kev_due":"","kev_added":"","epss":null,"cvss_vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","fix":false,"fix_url":"","refs":["https://plugins.trac.wordpress.org/browser/advanced-ip-blocker/tags/8.13.13/includes/class-advaipbl-2fa-manager.php#L71","https://plugins.trac.wordpress.org/browser/advanced-ip-blocker/tags/8.13.13/includes/class-advaipbl-main.php#L519","https://plugins.trac.wordpress.org/browser/advanced-ip-blocker/tags/8.13.13/includes/class-advaipbl-main.php#L6875"],"url":"https://cve.blackmesa.ca/?q=CVE-2026-104732"}],"vendor_spikes":[{"vendor":"WordPress","count":110,"critical_count":6},{"vendor":"Unknown","count":21,"critical_count":0},{"vendor":"Dell","count":19,"critical_count":0},{"vendor":"Apache","count":13,"critical_count":0},{"vendor":"Microsoft","count":13,"critical_count":1},{"vendor":"F5","count":10,"critical_count":0},{"vendor":"Oracle","count":9,"critical_count":0},{"vendor":"Linux","count":7,"critical_count":0},{"vendor":"Red Lion Controls","count":7,"critical_count":0},{"vendor":"Red Hat","count":5,"critical_count":1}],"epss_risers":[],"developing_map":{},"trending_count":18,"new_cve_count":396,"has_news_data":true,"has_cve_data":true,"news_for_cve":{"CVE-2026-50696":{"anchor":"#dev-5","rank":5,"coverage":3},"CVE-2026-88771":{"anchor":"#dev-6","rank":6,"coverage":3},"CVE-2026-88772":{"anchor":"#dev-6","rank":6,"coverage":3},"CVE-2026-62744":{"anchor":"#dev-10","rank":10,"coverage":2},"CVE-2026-68875":{"anchor":"#dev-10","rank":10,"coverage":2},"CVE-2026-68878":{"anchor":"#dev-10","rank":10,"coverage":2}}}