[vulnfeed] 4 critical CVEs — 2026-08-26 20:00 UTC
vulnfeed
Critical alert — 2026-08-26 23:51 UTC
4 new critical CVEs
in the last 5 hours — 1 actively exploited (CISA KEV) · 4 CVSS ≥ 9.0
New vulnerabilities
Gitea before 1.27.1 allows remote code execution via the diffpatch API through Git hook installation.
Gitea before 1.27.1 allows remote code execution via the diffpatch API through Git hook installation.
CVSS 9.8
CVE-2026-19485CRITICAL
A Predictable Resource Name vulnerability in BigQuery Import Staging in Google Cloud Vertex AI Search for Comm
A Predictable Resource Name vulnerability in BigQuery Import Staging in Google Cloud Vertex AI Search for Commerce versions prior to 2026-04-27 on Google Cloud Platform allows an attacker knowing the
CVSS 9.3
CVE-2026-65641CRITICAL
A vulnerability allowing an unauthenticated network attacker to coerce SMB authentication from the service acc
A vulnerability allowing an unauthenticated network attacker to coerce SMB authentication from the service account.
CVSS 9.3
CVE-2026-70419CRITICAL
Dell Cloud Disaster Recovery, versions 20.2 and prior, contain an Improper Neutralization of Special Elements
Dell Cloud Disaster Recovery, versions 20.2 and prior, contain an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A high privileged attacker w
CVSS 9.1
vulnfeed critical alerts — vulnfeed.it.
Unsubscribe
Don't miss what's next. Subscribe to Vulnfeed: