OpenThreat

OpenThreat Place where Security and Servers collide We offer you a variety of solutions and ideas to grow up you company without any security concerns.

06/09/2026

ICYMI: 🚨 New High Impact CVE Detected! 🚨

CVE-2026-18221 affects IBM / i

Details: IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to gain unauthorized access due to improper validation of client-supplied authentication parameters....

πŸ”— https://www.ibm.com/support/pages/node/7286186

πŸ” Could this affect your systems?
🎯 We map threats to your infrastructure and help you respond smart and fast.
πŸ“© Let's talk: https://openthreat.ro

06/09/2026

ICYMI: 🚨 New High Impact CVE Detected! 🚨

CVE-2026-18486 affects IBM / ContextForge MCP Gateway

Details: IBM ContextForge MCP Gateway

06/09/2026

ICYMI: 🚨 New High Impact CVE Detected! 🚨

CVE-2026-18658 affects IBM / Operational Decision Manager

Details: IBM Operational Decision Manager 9.6.0.0, 9.5.0.0, 8.11.1.0, 8.11.0.1, 8.12.0.1, 9.5.0.1, and 9.0.0.1 is vulnerable to SQL injection. An unauthenticated attacker can execute arbitrary SQL statements a...

πŸ”— https://www.ibm.com/support/pages/node/7286196

πŸ” Could this affect your systems?
🎯 We map threats to your infrastructure and help you respond smart and fast.
πŸ“© Let's talk: https://openthreat.ro

06/09/2026

ICYMI: 🚨 New High Impact CVE Detected! 🚨

CVE-2026-86185 affects Bilibili / Bilibili Desktop

Details: Bilibili Desktop through 1.18.0 disables TLS certificate verification process-wide and executes unsigned remote JavaScript configuration without integrity checks. An attacker in an on-path network pos...

πŸ”— https://github.com/LeoWSY-hashblue/bilibili-desktop-tls-disabled-rce

πŸ” Could this affect your systems?
🎯 We map threats to your infrastructure and help you respond smart and fast.
πŸ“© Let's talk: https://openthreat.ro

06/09/2026

ICYMI: 🚨 New High Impact CVE Detected! 🚨

CVE-2026-83627 affects wpmudev / Hummingbird Performance – Cache & Page Speed Optimization for Core Web Vitals | Critical CSS | Minify CSS | Defer CSS Javascript | CDN

Details: The Hummingbird – Speed Optimization, Caching, Minify, Compress & CDN plugin for WordPress is vulnerable to Remote Code Ex*****on in all versions up to, and including, 3.21.0 via the log_msg() functio...

πŸ”— https://www.wordfence.com/threat-intel/vulnerabilities/id/65c3ca36-79e6-47f8-9524-27e7631f4caf?source=cve

πŸ” Could this affect your systems?
🎯 We map threats to your infrastructure and help you respond smart and fast.
πŸ“© Let's talk: https://openthreat.ro

06/09/2026

ICYMI: 🚨 New High Impact CVE Detected! 🚨

CVE-2026-86145 affects PCRE / PCRE2

Details: PCRE2 before 10.48 allows a pcre2_dfa_match out-of-bounds write because reuse of a cached workspace block, in a recursive DFA matching workspace, lacks a size check (even though a newly allocated bloc...

πŸ”— https://github.com/PCRE2Project/pcre2/security/advisories/GHSA-3r4p-g7gg-ppmf

πŸ” Could this affect your systems?
🎯 We map threats to your infrastructure and help you respond smart and fast.
πŸ“© Let's talk: https://openthreat.ro

06/09/2026

ICYMI: 🚨 New High Impact CVE Detected! 🚨

CVE-2026-86140 affects xmlsoft / libxml2

Details: In libxml2 before 2.15.4, xmlSnprintfElements in valid.c has a strcat stack-based buffer overflow....

πŸ”— https://github.com/GNOME/libxml2/compare/v2.15.3...v2.15.4

πŸ” Could this affect your systems?
🎯 We map threats to your infrastructure and help you respond smart and fast.
πŸ“© Let's talk: https://openthreat.ro

06/09/2026

ICYMI: 🚨 New High Impact CVE Detected! 🚨

CVE-2026-84504 affects fastify / fastify

Details: fastify versions before 5.12.2 treat the object resolved by a successful Ajv async validator as the value result protocol used by custom validator compilers. If a request that passes its route schema ...

πŸ”— https://github.com/fastify/fastify/security/advisories/GHSA-667r-xxjv-c9mm

πŸ” Could this affect your systems?
🎯 We map threats to your infrastructure and help you respond smart and fast.
πŸ“© Let's talk: https://openthreat.ro

06/09/2026

ICYMI: 🚨 New High Impact CVE Detected! 🚨

CVE-2025-9049 affects scriptsbundle / Nokri – Job Board WordPress Theme

Details: The Nokri – Job Board WordPress Theme theme for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'nokri_account_member_permissions' function in all...

πŸ”— https://www.wordfence.com/threat-intel/vulnerabilities/id/e079e886-70a5-4188-ad99-96fc37651ed0?source=cve

πŸ” Could this affect your systems?
🎯 We map threats to your infrastructure and help you respond smart and fast.
πŸ“© Let's talk: https://openthreat.ro

06/09/2026

ICYMI: 🚨 New High Impact CVE Detected! 🚨

CVE-2026-10196 affects getwpfunnels / Mail Mint – Email Marketing, Newsletter, Email Automation & WooCommerce Emails

Details: The Mail Mint – Email Marketing, Newsletter, Email Automation & WooCommerce Emails plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.31.0 via deseriali...

πŸ”— https://www.wordfence.com/threat-intel/vulnerabilities/id/76c073d9-9572-43e4-82eb-49adf678535b?source=cve

πŸ” Could this affect your systems?
🎯 We map threats to your infrastructure and help you respond smart and fast.
πŸ“© Let's talk: https://openthreat.ro

Address

Strada Soldatului
Bragadiru

Alerts

Be the first to know and let us send you an email when OpenThreat posts news and promotions. Your email address will not be used for any other purpose, and you can unsubscribe at any time.

Shortcuts

Share