VULNERABILITY INTELLIGENCE

CVE index

Use CVSS, EPSS, CISA KEV, affected-version data, and source evidence as separate signals for prioritization.

NVD data is used under its public data terms. This service is not endorsed or certified by NVD.
19,287 CVE recordsPage 782 of 1286 · EPSS data 2026.08.10
ReviewHigh
CVE-2026-48236

Open ISES Tickets

Open ISES Tickets before 3.44.2 contains a SQL injection vulnerability in db_loader.php where the multiple POST parameters (ticketsdb, ticketshost, ticketsuser, ticketspassword) are concatenated into mysqli connection arguments and dynamic SQL operating against an attacker-controlled database without sanitization. Authenticated attackers can craft requests that alter query semantics to read, modify, or destroy database contents.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-48235

Open ISES Tickets

Open ISES Tickets before 3.44.2 contains a SQL injection vulnerability in incs/remotes.inc.php where latitude, longitude, callsign, mph, altitude, and timestamp values parsed from external GPS tracking service XML/JSON responses (InstaMapper and Google Latitude integration) are concatenated into UPDATE and INSERT statements without sanitization. An attacker able to compromise or impersonate the remote GPS tracker endpoint can inject SQL to manipulate the responder location, tracks, and assignment tables.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-48234

Open ISES Tickets

Open ISES Tickets before 3.44.2 contains a SQL injection vulnerability in portal/ajax/list_requests.php where the sort and dir GET parameters are concatenated into the ORDER BY clause of a SELECT statement without sanitization. Authenticated attackers can craft requests that alter query semantics to read, modify, or destroy database contents.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-48233

Open ISES Tickets

Open ISES Tickets before 3.44.2 contains a SQL injection vulnerability in ajax/sit_incidents.php where the offset GET parameter is concatenated into the LIMIT clause of a SELECT statement without sanitization. Authenticated attackers can craft requests that alter query semantics to read, modify, or destroy database contents.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-48232

Open ISES Tickets

Open ISES Tickets before 3.44.2 contains a SQL injection vulnerability in ajax/fullsit_incidents.php where the offset GET parameter is concatenated into the LIMIT clause of a SELECT statement without sanitization. Authenticated attackers can craft requests that alter query semantics to read, modify, or destroy database contents.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-48231

Open ISES Tickets

Open ISES Tickets before 3.44.2 contains a SQL injection vulnerability in tables.php where the multiple POST parameters (tablename, indexname, sortby) are concatenated into table/column identifiers in dynamically constructed SELECT/UPDATE/DELETE statements without sanitization. Authenticated attackers can craft requests that alter query semantics to read, modify, or destroy database contents.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-48207

Apache Software Foundation Apache Fory, fory

Deserialization of untrusted data in Apache Fory PyFory. PyFory's ReduceSerializer could bypass documented DeserializationPolicy validation hooks during reduce-state restoration and global-name resolution. An application is vulnerable if it deserializes attacker-controlled data using PyFory Python-native mode with strict mode disabled and relies on DeserializationPolicy to restrict unsafe classes, functions, or module attributes. This issue affects Apache Fory: from before 1.0.0. Mitigation: Users of Apache Fory are recommended to upgrade to version 1.0.0 or later, which enforces Deserializ...

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-9089

ConnectWise Automate, automate

The ConnectWise Automate™ Agent does not fully verify the authenticity of components obtained during plugin loading and self-update operations. This issue is addressed in Automate 2026.5.

The CVSS severity warrants an early asset and exposure review.
ReviewCritical
CVE-2026-39531

Wp Directory Kit

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Wp Directory Kit WP Directory Kit allows Blind SQL Injection. This issue affects WP Directory Kit: from n/a through 1.5.0.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-45208

Trend Micro, Inc. TrendAI Apex One, TrendAI Apex One as a Service, apex one

A time-of-check time-of-use vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-45207

Trend Micro, Inc. TrendAI Apex One, TrendAI Apex One as a Service, apex one

An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. This is similar to CVE-2026-45206 but exists in a different process protection communication mechanism. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-45206

Trend Micro, Inc. TrendAI Apex One, TrendAI Apex One as a Service, apex one

An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. This is similar to CVE-2026-45207 but exists in a different process protection communication mechanism. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-34930

Trend Micro, Inc. TrendAI Apex One, TrendAI Apex One as a Service, apex one

An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. This is similar to CVE-2026-34927 but exists in a different process protection mechanism. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-34929

Trend Micro, Inc. TrendAI Apex One, TrendAI Apex One as a Service, apex one

An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. This is similar to CVE-2026-34927 but exists in a different inter-process communication mechanism. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

The CVSS severity warrants an early asset and exposure review.
ReviewHigh
CVE-2026-34928

Trend Micro, Inc. TrendAI Apex One, TrendAI Apex One as a Service, apex one

An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. This is similar to CVE-2026-34927 but exists in a different named pipe communication mechanism. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

The CVSS severity warrants an early asset and exposure review.