Logo
  • NEWS
  • NVD
  • EXPLOITS
  • SECURITY
    • NCSC
    • SECURELIST
    • US-CERT
  • ARCHIVE
  • ABOUT
    • Privacy Policy
    • Terms of Use
    • External Links
    • Sitemap

  • CVE-2026-78435 – A vulnerability has been found in Faveo Helpdesk up to 2.0.3. Affected is the function …

    A vulnerability has been found in Faveo Helpdesk up to 2.0.3. Affected is the function unlink of the file …

    24 August 2026
    NVD
  • CVE-2026-78434 – A flaw has been found in Faveo Helpdesk up to 2.0.3. This impacts the function …

    A flaw has been found in Faveo Helpdesk up to 2.0.3. This impacts the function FormController::post_ticket_reply of the file …

    24 August 2026
    NVD
  • CVE-2026-78284 – Unauthenticated Arbitrary File Deletion in MasterStudy LMS <= 3.7.42 ...

    Unauthenticated Arbitrary File Deletion in MasterStudy LMS

    24 August 2026
    NVD
  • CVE-2026-78282 – Unauthenticated Cross Site Scripting (XSS) in Stripe Payments <= 2.1.2 ...

    Unauthenticated Cross Site Scripting (XSS) in Stripe Payments

    24 August 2026
    NVD
  • CVE-2026-78268 – Unauthenticated Sensitive Data Exposure in Lead Generation Contact Widget & AI …

    Unauthenticated Sensitive Data Exposure in Lead Generation Contact Widget & AI Chatbot: Chat Button, Phone Call, Telegram, Email – …

    24 August 2026
    NVD
  • CVE-2026-78267 – Unauthenticated Privilege Escalation in TranslatePress <= 3.3.2 ...

    Unauthenticated Privilege Escalation in TranslatePress

    24 August 2026
    NVD
  • CVE-2026-78266 – Subscriber Broken Access Control in AutomatorWP <= 5.8.3 ...

    Subscriber Broken Access Control in AutomatorWP

    24 August 2026
    NVD
  • CVE-2026-78265 – Unauthenticated PHP Object Injection in The Events Calendar <= 6.17.2 ...

    Unauthenticated PHP Object Injection in The Events Calendar

    24 August 2026
    NVD
  • CVE-2026-78264 – Unauthenticated Cross Site Scripting (XSS) in Toolset Blocks <= 1.6.26 ...

    Unauthenticated Cross Site Scripting (XSS) in Toolset Blocks

    24 August 2026
    NVD
  • CVE-2026-78263 – Unauthenticated Cross Site Scripting (XSS) in Event Tickets <= 5.29.2.1 ...

    Unauthenticated Cross Site Scripting (XSS) in Event Tickets

    24 August 2026
    NVD
  • CVE-2026-78262 – Unauthenticated PHP Object Injection in WP Project Manager <= 4.0.6 ...

    Unauthenticated PHP Object Injection in WP Project Manager

    24 August 2026
    NVD
  • CVE-2026-78259 – Unauthenticated Broken Authentication in WPLegalPages <= 3.7.0 ...

    Unauthenticated Broken Authentication in WPLegalPages

    24 August 2026
    NVD
{"loadingDistance":1200,"stickyPosts":[],"nextPageLink":"https://itts.at/page/2","queryId":0}

●●●

CookieFree

NVD

  • CVE-2026-78156 – A security vulnerability has been detected in Open5GS 2.8.0. Affected by this issue is …24 August 2026
  • CVE-2026-78157 – A vulnerability was detected in Open5GS 2.8.0. This affects the function pcrf_rx_aar_cb …24 August 2026
  • CVE-2026-78148 – A vulnerability was determined in ggml-org llama.cpp bec4772f6. This affects the function …24 August 2026
  • CVE-2026-78435 – A vulnerability has been found in Faveo Helpdesk up to 2.0.3. Affected is the function …24 August 2026
  • CVE-2026-78154 – A vulnerability was identified in the-momentum open-wearables up to 0.6.2. This impacts …24 August 2026

EXPLOITS

  • PCMan 2.0.7 – Buffer Overflow18 August 2026
  • flyto-core 2.26.7 – Arbitrary File Write18 August 2026
  • Nodemailer 9.0.0 – File Read/ SSRF18 August 2026
  • NanaZip 6.5 – DoS18 August 2026
  • Linuxfabrik monitoring_plugins_6.0.0 – SSRF18 August 2026

SECURELIST

  • The invisible passenger in your car21 August 2026
  • APT group HoneyMyte upgrades CoolClient: the backdoor gets a kernel-level Windows rootkit14 August 2026
  • Armored Likho expands its cyber-espionage toolkit13 August 2026
  • Head Mare APT is exploiting vulnerabilities in an unpatched TrueConf server to deliver Pha11 August 2026
  • Project CAV3RN continues: Google Apps Script as C2 relay and DNS-based C2 channel selectio11 August 2026


Copyright © 2026 ITTS | Cookie-Free | Privacy Policy | We are not responsible for the content of external sites.