Logo
  • NEWS
  • NVD
  • EXPLOITS
  • SECURITY
    • NCSC
    • SECURELIST
    • US-CERT
  • ARCHIVE
  • ABOUT
    • Privacy Policy
    • Terms of Use
    • External Links
    • Sitemap

  • Week in review: Accenture data breach, great open-source cybersecurity tools

    Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Securing the …

    12 July 2026
    Accenture, IT, News, Week
  • ‘A very good clone’: news stories faked to lure victims to scam investment sites

    he Guardian article looks interesting. It says the billionaire Jim Ratcliffe has stormed out of a BBC interview after presenter Laura …

    12 July 2026
    Cybercrime, Media, Money, Scams, The Guardian
  • CVE-2026-15502 – A vulnerability was detected in AojiaoZero Antaris 1.0. This affects the function …

    A vulnerability was detected in AojiaoZero Antaris 1.0. This affects the function _rewardPurchase of the file /ipn.php of the component …

    12 July 2026
    NVD
  • CVE-2026-15501 – A security vulnerability has been detected in AstrBotDevs AstrBot up to 4.25.2. Affected …

    A security vulnerability has been detected in AstrBotDevs AstrBot up to 4.25.2. Affected by this issue is the function …

    12 July 2026
    NVD
  • CVE-2026-61876 – LuCI versions fail to properly encode DHCPv6 lease hostnames before rendering in status …

    LuCI versions fail to properly encode DHCPv6 lease hostnames before rendering in status tables, allowing adjacent network attackers to …

    12 July 2026
    NVD
  • CVE-2026-61875 – luci-app-upnp contains a stored cross-site scripting vulnerability that allows …

    luci-app-upnp contains a stored cross-site scripting vulnerability that allows unauthenticated LAN clients to inject JavaScript via UPnP …

    12 July 2026
    NVD
  • CVE-2026-61874 – filebrowser versions before 2.63.17 fail to normalize paths before querying the share …

    filebrowser versions before 2.63.17 fail to normalize paths before querying the share index in DeleteWithPathPrefix, allowing authenticated …

    12 July 2026
    NVD
  • CVE-2026-59260 – OpenWrt luci-app-samba4 read ACL grants file.exec permission on /usr/sbin/smbd, allowing …

    OpenWrt luci-app-samba4 read ACL grants file.exec permission on /usr/sbin/smbd, allowing authenticated delegated users to execute the Samba …

    12 July 2026
    NVD
  • CVE-2026-56336 – Capgo before 12.128.2 contains an information disclosure vulnerability in the …

    Capgo before 12.128.2 contains an information disclosure vulnerability in the unauthenticated /private/sso/check-domain endpoint that …

    12 July 2026
    NVD
  • CVE-2026-56313 – Capgo before 12.128.2 contains a cross-organization account disruption vulnerability in …

    Capgo before 12.128.2 contains a cross-organization account disruption vulnerability in the SSO prelink endpoint that allows enterprise …

    12 July 2026
    NVD
  • CVE-2026-56308 – Capgo before 12.128.2 allows email address changes without requiring current password …

    Capgo before 12.128.2 allows email address changes without requiring current password re-authentication or verification of the existing …

    12 July 2026
    NVD
  • CVE-2026-56281 – Capgo before 12.128.2 contains a sql injection vulnerability in the POST …

    Capgo before 12.128.2 contains a sql injection vulnerability in the POST /private/admin_stats endpoint where the limit parameter is …

    12 July 2026
    NVD
{"loadingDistance":1200,"stickyPosts":[],"nextPageLink":"https://itts.at/page/2","queryId":0}

●●●

CookieFree

NVD

  • CVE-2026-15502 – A vulnerability was detected in AojiaoZero Antaris 1.0. This affects the function …12 July 2026
  • CVE-2026-15472 – A vulnerability was determined in Eleveo Call Recording Software 9.7.0. This …12 July 2026
  • CVE-2026-15473 – A vulnerability was identified in Eleveo Call Recording Software 9.7.0. This issue …12 July 2026
  • CVE-2026-15471 – A vulnerability was found in Eleveo Call Recording Software 9.7.0. This affects an …12 July 2026
  • CVE-2026-15470 – A vulnerability has been found in Eleveo Call Recording Software 9.7.0. Affected by this …12 July 2026

EXPLOITS

  • Krayin CRM v2.2.x – Authenticated Remote Code Execution8 July 2026
  • Langflow 1.9.0 – RCE8 July 2026
  • Atarim WordPress Plugin 4.2.2 – Sensitive Information Exposure8 July 2026
  • Joomla Page Builder CK 3.5.10 – Arbitrary File Upload8 July 2026
  • MCPJam Inspector – Remote Code Execution7 July 2026

SECURELIST

  • Threat landscape for industrial automation systems. Q1 20267 July 2026
  • When checking the URL isn’t enough: a Device Code Phishing attack via a Microsoft we6 July 2026
  • Armored Likho digging a snake pit: inside the covert BusySnake Stealer campaign3 July 2026
  • Missed incidents, persistent threats, and response gaps: Insights from compromise assessme2 July 2026
  • OpenClaw: risks for the users and how to mitigate them1 July 2026


Copyright © 2026 ITTS | Cookie-Free | Privacy Policy | We are not responsible for the content of external sites.