[vulnfeed] 11 critical CVEs — 2026-09-04 16:00 UTC
vulnfeed
Critical alert — 2026-09-04 19:01 UTC
11 new critical CVEs
in the last 5 hours — 11 CVSS ≥ 9.0
New vulnerabilities
CVE-2026-85661CRITICAL
excel-mcp-server 0.1.8 fails to enforce path confinement in stdio mode when EXCEL_FILES_PATH is unset, allowin
excel-mcp-server 0.1.8 fails to enforce path confinement in stdio mode when EXCEL_FILES_PATH is unset, allowing attackers to read and write arbitrary files. Attackers can supply unchecked file paths t
CVSS 9.3
CVE-2026-85663CRITICAL
Aim 3.29.1 remote tracking server fails to authenticate requests and dispatches arbitrary methods through geta
Aim 3.29.1 remote tracking server fails to authenticate requests and dispatches arbitrary methods through getattr without allowlist validation. Unauthenticated attackers can register clients, instanti
CVSS 9.3
CVE-2026-85667CRITICAL
xiaobei through 5.5.2 fails to implement authentication or signature validation on webhook endpoints, allowing
xiaobei through 5.5.2 fails to implement authentication or signature validation on webhook endpoints, allowing unauthenticated attackers to inject arbitrary messages into the agent pipeline. Attackers
CVSS 9.3
CVE-2026-85672CRITICAL
zerox 1.1.20 contains an OS command injection vulnerability in the file download mechanism where the temporary
zerox 1.1.20 contains an OS command injection vulnerability in the file download mechanism where the temporary file extension derived from document URLs is interpolated unsanitized into shell commands
CVSS 9.3
CVE-2026-85688CRITICAL
TEN Framework 0.11.71 contains unauthenticated arbitrary file read and write vulnerabilities in the TMAN Desig
TEN Framework 0.11.71 contains unauthenticated arbitrary file read and write vulnerabilities in the TMAN Designer file-content API endpoints. Attackers can submit POST and PUT requests to the /api/des
CVSS 9.3
CVE-2026-85695CRITICAL
FastChat contains an authentication bypass vulnerability in the /register_worker endpoint that allows unauthen
FastChat contains an authentication bypass vulnerability in the /register_worker endpoint that allows unauthenticated attackers to register arbitrary worker addresses and perform server-side request f
CVSS 9.3
CVE-2026-85696CRITICAL
SadTalker contains an OS command injection vulnerability in the video muxing process where uploaded audio file
SadTalker contains an OS command injection vulnerability in the video muxing process where uploaded audio filenames are interpolated into ffmpeg commands without proper escaping. Attackers can upload
CVSS 9.3
CVE-2026-85620CRITICAL
Postgres MCP Pro 0.3.0 contains a restricted-mode bypass vulnerability where function-name validation is not a
Postgres MCP Pro 0.3.0 contains a restricted-mode bypass vulnerability where function-name validation is not applied to RangeFunction nodes in FROM clauses. Attackers can execute file-reading function
CVSS 9.2
CVE-2026-85625CRITICAL
sift (sift.js) 17.1.3 enumerates query keys with for...in, which walks the object prototype chain, and dispatc
sift (sift.js) 17.1.3 enumerates query keys with for...in, which walks the object prototype chain, and dispatches any matched operator key including $where. The $where operation compiles a string valu
CVSS 9.2
CVE-2026-85660CRITICAL
cli-mcp-server 0.2.5 contains a command allowlist bypass vulnerability in the _validate_command_with_operators
cli-mcp-server 0.2.5 contains a command allowlist bypass vulnerability in the _validate_command_with_operators function when ALLOW_SHELL_OPERATORS is enabled. Attackers can use shell command substitut
CVSS 9.2
CVE-2026-85694CRITICAL
LaVague 0.2.35 contains a remote code execution vulnerability in PythonFromMarkdownExtractor.extract_as_object
LaVague 0.2.35 contains a remote code execution vulnerability in PythonFromMarkdownExtractor.extract_as_object that evaluates untrusted language model output derived from web page content. Attackers c
CVSS 9.2
vulnfeed critical alerts — vulnfeed.it.
Unsubscribe
Don't miss what's next. Subscribe to Vulnfeed: