[vulnfeed] 2 critical CVEs — 2026-08-27 08:00 UTC
vulnfeed
Critical alert — 2026-08-27 10:03 UTC
2 new critical CVEs
in the last 5 hours — 2 CVSS ≥ 9.0
New vulnerabilities
CVE-2026-59270CRITICAL
Spring Security's embedded UnboundID LDAP server (UnboundIdContainer) unconditionally registers an administrat
Spring Security's embedded UnboundID LDAP server (UnboundIdContainer) unconditionally registers an administrative credential and binds its listener to all available network interfaces.
Spring Security
CVSS 9.4
CVE-2026-77991CRITICAL
Joomla Extension - joomlaeventmanager.net - Privileged remote code execution in Joomla Event Manager < 5.0.1 -
Joomla Extension - joomlaeventmanager.net - Privileged remote code execution in Joomla Event Manager < 5.0.1 - The administrator source model allows to write dangerous file type incl. PHP, leading to
CVSS 9.4
vulnfeed critical alerts — vulnfeed.it.
Unsubscribe
Don't miss what's next. Subscribe to Vulnfeed: