Vulnfeed

Archives
Log in
Subscribe
September 2, 2026

[vulnfeed] 6 critical CVEs — 2026-09-02 20:00 UTC

vulnfeed Critical alert — 2026-09-02 22:43 UTC
6 new critical CVEs in the last 5 hours — 6 CVSS ≥ 9.0
New vulnerabilities
CVE-2026-19117CRITICAL
Under specific conditions, an attacker can register an attacker-controlled FIDO2 credential against a target a
Under specific conditions, an attacker can register an attacker-controlled FIDO2 credential against a target account and then authenticate as that user. This issue affects on-premises deployments only
CVSS 9.8
CVE-2026-53649CRITICAL
Joro is a web exploitation framework. Prior to version 1.1.1, Joro's default proxy mode exposes a local API on
Joro is a web exploitation framework. Prior to version 1.1.1, Joro's default proxy mode exposes a local API on 127.0.0.1:9090 that performs no authentication and applies a wildcard CORS policy. Becaus
CVSS 9.6
CVE-2026-53670CRITICAL
PREVAIL is a Polynomial-Runtime EBPF Verifier using an Abstract Interpretation Layer. Prior to version 0.2.4,
PREVAIL is a Polynomial-Runtime EBPF Verifier using an Abstract Interpretation Layer. Prior to version 0.2.4, in the Prevail eBPF verifier, EbpfTransformer::add() silently skips offset-variable update
CVSS 9.3
CVE-2026-53671CRITICAL
PREVAIL is a Polynomial-Runtime EBPF Verifier using an Abstract Interpretation Layer. Prior to version 0.2.4,
PREVAIL is a Polynomial-Runtime EBPF Verifier using an Abstract Interpretation Layer. Prior to version 0.2.4, the abstract transformer in prevail treats writes through a T_CTX-typed base register as a
CVSS 9.3
CVE-2026-66786CRITICAL
A flaw was found in submariner. In cert-auth mode, the connection configuration is built using free-form strin
A flaw was found in submariner. In cert-auth mode, the connection configuration is built using free-form strings from the Custom Resource Definition (CRD) without proper validation. A malicious cluste
CVSS 9.1
CVE-2026-62674CRITICAL
Omnigent: Shared Agent Bundle Overwrite Leads to Authenticated Runner RCE
### Summary An authenticated user with edit access to their own session can overwrite a shared/template agent by uploading a full agent bundle through `PUT /sessions/{session_id}/agent`. Shared/temp
CVSS 9.0

Live feed →  ·  Notification settings

vulnfeed critical alerts — vulnfeed.it. Unsubscribe

Don't miss what's next. Subscribe to Vulnfeed:
Older → [vulnfeed] 7 critical CVEs — 2026-09-02 16:00 UTC
Powered by Buttondown, the easiest way to start and grow your newsletter.