CVE-2026-20030: SQL Injection in Cisco Crosswork
A critical SQL injection vulnerability in Cisco Crosswork Data Gateway, Network Controller, and Planning could allow an attacker to execute arbitrary SQL…
A critical SQL injection vulnerability in Cisco Crosswork Data Gateway, Network Controller, and Planning could allow an attacker to execute arbitrary SQL…
A critical missing authentication vulnerability in Cisco Crosswork platforms could allow unauthorized access to critical functions. CVSS score 10.0, fixed in Crosswork…
A critical vulnerability in Cisco Crosswork allows external control of the file system, potentially leading to arbitrary file writes. CVSS score 10.0,…
Multiple improper access control vulnerabilities in Cisco Secure Workload could allow privilege escalation and bypasses. CVSS score 10.0, fixed in versions 3.10.9.1…
Improper authentication vulnerabilities in Cisco Secure Workload could allow authentication bypass and reliance on untrusted inputs. CVSS score 10.0, fixed in versions…
CVE-2026-69836 is a maximum-severity (CVSS 10.0) remote code execution vulnerability in Microsoft Entra ID caused by deserialization of untrusted data. Exploited in…
Metabase has disclosed a maximum-severity zero-day vulnerability in its business intelligence and data visualization software that is being actively exploited in the…
HashiCorp, Veeam, and the Django Software Foundation have released patches for 11 vulnerabilities across Terraform MCP Server, Veeam Service Provider Console, and…
Adobe has released critical security updates addressing multiple maximum-severity vulnerabilities in Adobe ColdFusion and Adobe Campaign Classic. The patches fix seven CVSS…