Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerability
A remote code execution vulnerability exists in Zimbra Collaboration (ZCS) before 10.1.20 when the optional zimbra-snmp package is installed and SNMP notifications are enabled. Due to improper sanitization of untrusted input during SNMP notification processing, an unauthenticated attacker can send specially crafted SMTP requests that may result in execution of arbitrary operating system commands as the Zimbra user.
Zimbra Collaboration Suite (ZCS) OS Command Injection Vulnerability
CVE Numbers
Affected Product
Threat Description
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
https://wiki.zimbra.com/wiki/Security_Center
https://wiki.zimbra.com/wiki/Zimbra_Security_Advisories
https://moje.cert.pl/komunikaty/2026/145/aktywnie-wykorzystywana-podatnosc-w-zimbra-collaboration-suite/
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-73570
https://nvd.nist.gov/vuln/detail/CVE-2026-73570
TrueConf Server Code Injection Vulnerability
A remote unauthorized attacker with network access via port 4307/TCP to the TrueConf server versions 5.3.X to 5.3.9, 5.4.X to 5.4.9, 5.5.X to 5.5.5, and earlier could use a specially crafted script to break out of the isolated environment and execute arbitrary code on the host system.
TrueConf Server Code Injection Vulnerability
CVE Numbers
Affected Product
Threat Description
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
https://ics-cert.kaspersky.com/advisories/2026/08/11/trueconf-server-breakout-from-isolated-environment/
https://securelist.com/tr/head-mare-targets-trueconf-server-with-phantomcore/120988/
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-72530
https://nvd.nist.gov/vuln/detail/CVE-2026-72530
TrueConf Server Missing Authentication for Critical Function Vulnerability
A remote unauthorized attacker with network access via port 4307/TCP to the TrueConf server versions 5.3.X to 5.3.9, 5.4.X to 5.4.9, 5.5.X to 5.5.5, and earlier could execute an arbitrary script by calling an undocumented function.
TrueConf Server Missing Authentication for Critical Function Vulnerability
CVE Numbers
Affected Product
Threat Description
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
https://ics-cert.kaspersky.com/advisories/2026/08/11/trueconf-server-missing-authentication-for-critical-function/
https://securelist.com/tr/head-mare-targets-trueconf-server-with-phantomcore/120988/
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-72529
https://nvd.nist.gov/vuln/detail/CVE-2026-72529
MLflow Server-Side Request Forgery Vulnerability
MLflow is an open source AI engineering platform for agents, large language models, and machine learning models. Prior to 3.15.0, the unauthenticated POST /api/2.0/mlflow/webhooks/{id}/test endpoint calls _validate_webhook_url() in mlflow/utils/validation.py only for the original URL while mlflow/webhooks/delivery.py follows redirects and re-resolves the hostname without pinning the validated address, allowing attackers to reach internal or cloud metadata services and receive response_status and response_body. This issue is fixed in version 3.15.0.
MLflow Server-Side Request Forgery Vulnerability
CVE Numbers
Affected Product
Threat Description
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
https://github.com/mlflow/mlflow/commit/ba949522477cbd5915aa55d29b0cfad7d5ddf939
https://github.com/mlflow/mlflow/issues/24179
https://github.com/mlflow/mlflow/pull/24258
https://github.com/mlflow/mlflow/releases/tag/v3.15.0
https://github.com/mlflow/mlflow/security/advisories/GHSA-7gwp-5pfp-969j
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-64849
https://nvd.nist.gov/vuln/detail/CVE-2026-64849
Apple macOS Improper Authentication Vulnerability
An authentication issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.9, macOS Sonoma 14.8.9, macOS Tahoe 26.6.1. An attacker on the network may be able to authenticate to Screen Sharing without valid credentials.
Apple macOS Improper Authentication Vulnerability
CVE Numbers
Affected Product
Threat Description
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
https://support.apple.com/en-us/148170
https://support.apple.com/en-us/148171
https://support.apple.com/en-us/148172
http://seclists.org/fulldisclosure/2026/Aug/36
http://seclists.org/fulldisclosure/2026/Aug/37
https://advisories.ncsc.nl/2026/ncsc-2026-0280.html
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-65400
https://nvd.nist.gov/vuln/detail/CVE-2026-65400
Broadcom VMware vCenter Path Traversal Vulnerability
VMware vCenter contains a directory traversal vulnerability in the Syslog server. A malicious actor with network access to vCenter may exploit this issue to execute arbitrary code.
Broadcom VMware vCenter Path Traversal Vulnerability
CVE Numbers
Affected Product
Threat Description
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/38017
https://medium.com/@quirso_de/active-exploitation-of-cve-2026-59310-361-victim-ips-across-47-countries-9783187cc6ff
https://medium.com/@quirso_de/global-exploitation-of-cve-2026-59310-by-suspected-chinese-nexus-apt-related-cve-2026-59309-443a79e1466d
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-59310
https://nvd.nist.gov/vuln/detail/CVE-2026-59310
Microsoft SharePoint Weak Authentication Vulnerability
Weak authentication in Microsoft Office SharePoint allows an unauthorized attacker to bypass a security feature over a network.
Microsoft SharePoint Weak Authentication Vulnerability
CVE Numbers
Affected Product
Threat Description
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-55040
https://github.com/sfewer-r7/CVE-2026-55040
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-55040
https://www.rapid7.com/blog/post/ra-microsoft-sharepoint-jwt-token-authentication-bypass-cve-2026-55040/
https://nvd.nist.gov/vuln/detail/CVE-2026-55040
Microsoft Internet Key Exchange (IKE) Service Extensions Double Free Vulnerability
Double free in Windows IKE Extension allows an unauthorized attacker to execute code over a network.
Microsoft Internet Key Exchange (IKE) Service Extensions Double Free Vulnerability
CVE Numbers
Affected Product
Threat Description
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
Ray-Project Ray Code Injection Vulnerability
Ray is an AI compute engine. Prior to version 2.52.0, developers working with Ray as a development tool can be exploited via a critical RCE vulnerability exploitable via Firefox and Safari. This vulnerability is due to an insufficient guard against browser-based attacks, as the current defense uses the User-Agent header starting with the string "Mozilla" as a defense mechanism. This defense is insufficient as the fetch specification allows the User-Agent header to be modified. Combined with a DNS rebinding attack against the browser, and this vulnerability is exploitable against a developer running Ray who inadvertently visits a malicious website, or is served a malicious advertisement (malvertising). This issue has been patched in version 2.52.0.
Ray-Project Ray Code Injection Vulnerability
CVE Numbers
Affected Product
Threat Description
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
https://github.com/ray-project/ray/commit/70e7c72780bdec075dba6cad1afe0832772bfe09
https://github.com/ray-project/ray/security/advisories/GHSA-q279-jhrf-cc6v
https://www.bitsight.com/blog/rondodox-botnet-infrastructure-analysis
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-62593
https://nvd.nist.gov/vuln/detail/CVE-2025-62593
Metabase SQL Injection Vulnerability
Metabase allows a remote, unauthenticated attacker to inject arbitrary SQL via the '/reset_password' database endpoint and gain administrator access to the connected Metabase instance.
Metabase SQL Injection Vulnerability
CVE Numbers
Affected Product
Threat Description
Severity Scale
Severity
Affected Versions
Recommended Mitigation
Reference Links
https://github.com/metabase/metabase/security/advisories/GHSA-vwf4-m7j8-wcjf
https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/IT/white/2026/va-26-222-01.json
https://www.cve.org/CVERecord?id=CVE-2026-72898
https://www.metabase.com/blog/security-update
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-72898
https://nvd.nist.gov/vuln/detail/CVE-2026-72898
