Posts of last 24 hours
A vulnerability, which was classified as problematic, has been found in Paid Membership Plugin, Ecommerce, User Registration Form, Login Form and User Profile & Restrict Content Plugin up to 4.16.17 on WordPress. This issue affects some unknown processing of the component Registration Handler. The manipulation leads to improper privilege management.
This vulnerability is traded as CVE-2026-12497. It is possible to initiate the attack remotely. There is no exploit available.
It is advisable to upgrade the affected component.
https://vuldb.com/vuln/382860
Every AI-for-testing demo I have sat through follows the same script. Someone points a model at a re
https://buaq.net/go-430682.html
Your BI Platform Is Not the Product. The Decision Is.The success of a business intelligence project
https://buaq.net/go-430683.html
За привычным локальным режимом скрывался доступ, которого никто не ожидал.
https://www.securitylab.ru/news/575234.php
Pop the hood on a new car and you won’t find much you can fix with a wrench. What you’ll find is software, and a lot of it. The screen in the dash probably runs Android or a flavor of Linux. The system watching the road for you might run QNX or VxWorks, the same kind of code that flies aircraft and runs factory floors. Carmakers spent the last decade making this switch, and it … More →
The post The automotive software vulnerabilities hiding in your dashboard appeared first on Help Net Security.
https://www.helpnetsecurity.com/2026/07/24/car-research-automotive-software-vulnerabilities/
A vulnerability labeled as critical has been found in Broadcom Automic Automation up to 24.4.4 on Linux. Impacted is an unknown function. The manipulation results in execution with unnecessary privileges.
This vulnerability is known as CVE-2026-8370. Attacking locally is a requirement. No exploit is available.
The affected component should be upgraded.
https://vuldb.com/vuln/364711
A vulnerability labeled as problematic has been found in Node View Permissions up to 1.6.x/2.0.0 on Drupal. This vulnerability affects unknown code. The manipulation results in improper check for unusual conditions.
This vulnerability is reported as CVE-2026-8491. The attack can be launched remotely. No exploit exists.
The affected component should be upgraded.
https://vuldb.com/vuln/364753
A vulnerability marked as problematic has been reported in Translate with GTranslate up to 3.0.4 on Drupal. This issue affects some unknown processing. This manipulation causes modification of assumed-immutable data.
This vulnerability appears as CVE-2026-8492. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.
https://vuldb.com/vuln/364754
A vulnerability was found in Colorbox Inline up to 2.1.0 on Drupal and classified as problematic. Affected by this vulnerability is an unknown functionality. Such manipulation leads to cross site scripting.
This vulnerability is referenced as CVE-2026-8493. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.
https://vuldb.com/vuln/364761
A vulnerability categorized as problematic has been discovered in Date iCal up to 4.0.14 on Drupal. This issue affects some unknown processing. The manipulation results in missing authorization.
This vulnerability is cataloged as CVE-2026-8495. The attack may be launched remotely. There is no exploit available.
It is advisable to upgrade the affected component.
https://vuldb.com/vuln/364765