Vulnfeed

Archives
Log in
Subscribe
August 4, 2026

[vulnfeed] 4 critical CVEs — 2026-08-04 12:00 UTC

vulnfeed Critical alert — 2026-08-04 14:57 UTC
4 new critical CVEs in the last 5 hours — 4 CVSS ≥ 9.0
New vulnerabilities
CVE-2026-14175CRITICAL
Unrestricted upload of file with dangerous type vulnerability in Bilin Software and Informatics Consultancy In
Unrestricted upload of file with dangerous type vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human Resources allows Upload a Web Shell to a Web Server. This issue
CVSS 9.8
CVE-2026-15721CRITICAL
Cleartext storage of sensitive information vulnerability in Bilin Software and Informatics Consultancy Inc. HU
Cleartext storage of sensitive information vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human Resources allows SQL Injection. This issue affects HUMANIST Digital
CVSS 9.8
CVE-2026-14804CRITICAL
Use of hard-coded cryptographic key vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST
Use of hard-coded cryptographic key vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human Resources allows Read Sensitive Constants Within an Executable. This issue
CVSS 9.1
CVE-2026-60007CRITICAL
In Eclipse Milo versions 0.6.0 through 1.1.4, username-token processing returns distinguishable errors for inv
In Eclipse Milo versions 0.6.0 through 1.1.4, username-token processing returns distinguishable errors for invalid RSA PKCS#1 v1.5 padding and other authentication failures, allowing an on-path attack
CVSS 9.1

Live feed →  ·  Notification settings

vulnfeed critical alerts — vulnfeed.it. Unsubscribe

Don't miss what's next. Subscribe to Vulnfeed:
← Newer [vulnfeed] 18 critical CVEs — 2026-08-04 16:00 UTC Older → [vulnfeed] 5 critical CVEs — 2026-08-04 08:00 UTC
Powered by Buttondown, the easiest way to start and grow your newsletter.