In this blog entry, researchers from the TrendAI™ MDR team discuss how they mapped the full end-to-end operation of SHADOW-WATER-063’s Banana RAT banking malware by analyzing server-side artifacts and victim-side data.
A vulnerability classified as critical was found in HCL Connections 8.0. Affected by this vulnerability is an unknown functionality. The manipulation results in incorrect authorization.
This vulnerability was named CVE-2026-21789. The attack may be performed from remote. There is no available exploit.
A vulnerability classified as problematic has been found in NeoRazorX facturascripts up to 2025.7. Affected is an unknown function. The manipulation leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2026-27964. The attack is possible to be carried out remotely. No exploit exists.
It is recommended to upgrade the affected component.
A vulnerability described as problematic has been identified in steipete summarize up to 0.15.0. This impacts an unknown function of the component Config File. Executing a manipulation can lead to incorrect permission assignment.
This vulnerability is handled as CVE-2026-45246. It is possible to launch the attack on the local host. There is not any exploit available.
Upgrading the affected component is recommended.
A vulnerability marked as critical has been reported in steipete summarize up to 0.15.0. This affects an unknown function. Performing a manipulation results in server-side request forgery.
This vulnerability is known as CVE-2026-45245. Remote exploitation of the attack is possible. No exploit is available.
It is suggested to upgrade the affected component.
A vulnerability labeled as problematic has been found in DumbWareio DumbAssets up to 1.0.11. The impacted element is an unknown function of the component Asset API Endpoint. Such manipulation leads to cross site scripting.
This vulnerability is traded as CVE-2026-45231. The attack may be launched remotely. There is no exploit available.
A patch should be applied to remediate this issue.
A vulnerability identified as problematic has been detected in BigBlueButton up to 3.0.18. The affected element is an unknown function. This manipulation causes cross site scripting.
This vulnerability appears as CVE-2026-27737. The attack may be initiated remotely. There is no available exploit.
You should upgrade the affected component.
A vulnerability categorized as problematic has been discovered in jarrodwatts claude-hud up to 0.0.12 on Windows. Impacted is the function execFile of the component Environment Variable Handler. The manipulation results in uncontrolled search path.
This vulnerability is reported as CVE-2026-47092. The attack requires a local approach. No exploit exists.
Applying a patch is advised to resolve this issue.
A vulnerability was found in Alinto SOGo up to 5.12.7. It has been rated as critical. This issue affects the function sogo_acl of the file /acls of the component addUserInAcls Endpoint. The manipulation of the argument uid leads to sql injection.
This vulnerability is documented as CVE-2026-8851. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is advised.
A vulnerability was found in dokploy up to 0.26.6. It has been declared as critical. This vulnerability affects the function execAsync. Executing a manipulation of the argument appName can lead to os command injection.
This vulnerability is registered as CVE-2026-27130. It is possible to launch the attack remotely. No exploit is available.
It is recommended to upgrade the affected component.
A vulnerability was found in FreePBX up to 16.0.70/17.0.5. It has been classified as critical. This affects the function unserialize of the component Backup Module. Performing a manipulation results in deserialization.
This vulnerability is cataloged as CVE-2026-26978. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is recommended.
A vulnerability was found in steipete summarize up to 0.15.0 and classified as critical. Affected by this issue is some unknown functionality. Such manipulation leads to missing authorization.
This vulnerability is listed as CVE-2026-45244. The attack may be performed from remote. There is no available exploit.
It is suggested to upgrade the affected component.
A vulnerability has been found in steipete summarize up to 0.15.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /v1/summarize. This manipulation causes missing authorization.
This vulnerability is tracked as CVE-2026-45242. The attack is possible to be carried out remotely. No exploit exists.
The affected component should be upgraded.
A vulnerability, which was classified as problematic, was found in laurent22 joplin up to 3.5.6. Affected is an unknown function. The manipulation results in path traversal: '../filedir'.
This vulnerability is identified as CVE-2026-22810. The attack is only possible with local access. There is not any exploit available.
You should upgrade the affected component.
A vulnerability, which was classified as critical, has been found in jarrodwatts claude-hud up to 0.0.12. This impacts an unknown function. The manipulation of the argument transcript_path leads to path traversal.
This vulnerability is referenced as CVE-2026-47091. The attack can only be performed from a local environment. No exploit is available.
It is suggested to install a patch to address this issue.
A vulnerability classified as critical was found in steipete summarize up to 0.15.0. This affects an unknown function. Executing a manipulation can lead to missing authorization.
The identification of this vulnerability is CVE-2026-45243. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is advised.