A vulnerability, which was classified as critical, was found in WP Travel Plugin up to 12.0.3 on WordPress. This affects an unknown part. The manipulation results in improper authentication.
This vulnerability is identified as CVE-2026-81796. The attack can be executed remotely. There is not any exploit available.
A vulnerability was found in Bosch Sensortec BME690 SensorAPI up to 1.0.3. It has been rated as critical. This affects the function read_all_field_data of the file bme69x.c of the component Field Data Parsing. Performing a manipulation of the argument gas_index results in out-of-bounds read.
This vulnerability was named CVE-2026-42806. The attack may be initiated remotely. There is no available exploit.
A vulnerability described as problematic has been identified in Builderall Plugin up to 3.0.2 on WordPress. This impacts the function Disable of the component AJAX Handler. Executing a manipulation of the argument post_id can lead to improper privilege management.
This vulnerability appears as CVE-2026-15823. The attack may be performed from remote. There is no available exploit.
A vulnerability was found in Apache ActiveMQ Artemis and classified as problematic. This impacts an unknown function of the component Message selector. The manipulation results in denial of service.
This vulnerability is identified as CVE-2026-75880. The attack can be executed remotely. There is not any exploit available.
A vulnerability labeled as problematic has been found in Concrete CMS up to 9.5.2. The affected element is an unknown function of the file concrete/controllers/dialog/event/edit.php of the component Calendar Event Edit Dialog. Such manipulation leads to authorization bypass.
This vulnerability is listed as CVE-2026-68527. The attack may be performed from remote. There is no available exploit.
A vulnerability was found in schreibfaul1 ESP32-audioI2S up to 4.0.0. It has been rated as critical. Affected by this vulnerability is the function read_ID3_Header of the component ID3 Synchronized-Lyrics Processing. The manipulation leads to out-of-bounds read.
This vulnerability is uniquely identified as CVE-2026-87961. The attack is possible to be carried out remotely. No exploit exists.
AI is becoming an operational force for cybercrime, surveillance, propaganda, fraud and weapons development, lowering the cost and scale of attacks. Artificial intelligence (AI) is becoming more than a tool for people who want to do something malicious. It is increasingly becoming part of the operational machinery itself. That is the main message emerging from […]