{"success":true,"data":{"threats":[{"id":"9ae8a4c9-9994-48ea-9070-c130220b0186","slug":"cert-eu-2026-006-critical-vulnerability-in-pan-os-6afa1c1e","externalId":"security-advisories-10943","source":"CERT-EU","sourceType":"vendor-rss","type":"security-news","title":"2026-006: Critical Vulnerability in PAN-OS","description":"On 6 May 2026, Palo Alto published a security advisory addressing a critical vulnerability affecting PAN-OS. This vulnerability allows an unauthenticated attacker to execute arbitrary code with root privileges. Palo Alto observed limited exploitation of this vulnerability. It is strongly recommended updating affected appliances as soon as patches will be available, and to apply workarounds and mitigation in the meantime.","cveId":null,"cvssScore":null,"cvssVector":null,"severity":"unknown","vendor":null,"product":null,"affectedVersions":[],"cwes":[],"tags":["cert-eu","cert","advisory"],"relatedCves":[],"titleFingerprint":"006-2026-critical-pan-vulnerability","countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://cert.europa.eu/publications/security-advisories/2026-006/","type":"report","title":"CERT-EU: 2026-006: Critical Vulnerability in PAN-OS"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T23:08:38.865Z","addedAt":"2026-07-29T20:53:11.786Z","updatedAt":"2026-10-08T23:08:38.868Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[],"raw":{"guid":"security-advisories-10943","link":"https://cert.europa.eu/publications/security-advisories/2026-006/","title":"2026-006: Critical Vulnerability in PAN-OS","feedId":"cert-eu","feedUrl":"https://cert.europa.eu/publications/security-advisories-rss","categories":[],"description":"On 6 May 2026, Palo Alto published a security advisory addressing a critical vulnerability affecting PAN-OS. This vulnerability allows an unauthenticated attacker to execute arbitrary code with root privileges. Palo Alto observed limited exploitation of this vulnerability. It is strongly recommended updating affected appliances as soon as patches will be available, and to apply workarounds and mitigation in the meantime.","publishedAt":null}},{"id":"9c5f53a4-bb91-4c93-8df5-039ecef6faed","slug":"cert-eu-2026-007-critical-vulnerability-in-windows-netlogon-b27c15d8","externalId":"security-advisories-10944","source":"CERT-EU","sourceType":"vendor-rss","type":"security-news","title":"2026-007: Critical Vulnerability in Windows Netlogon","description":"On 12 May 2026, Microsoft published a security advisory addressing a critical vulnerability affecting Windows Server when acting as a domain controller. This vulnerability allows an unauthenticated attacker to execute arbitrary code over a network. According to The Centre for Cybersecurity Belgium (CCB), this vulnerability is currently exploited by threat actors. It is strongly recommended updating affected Windows servers as soon as possible.","cveId":null,"cvssScore":null,"cvssVector":null,"severity":"unknown","vendor":null,"product":null,"affectedVersions":[],"cwes":[],"tags":["cert-eu","cert","advisory","geo:inferred"],"relatedCves":[],"titleFingerprint":"007-2026-critical-netlogon-vulnerability-windows","countryCodes":["BE"],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://cert.europa.eu/publications/security-advisories/2026-007/","type":"report","title":"CERT-EU: 2026-007: Critical Vulnerability in Windows Netlogon"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T23:08:38.818Z","addedAt":"2026-07-29T20:53:11.776Z","updatedAt":"2026-10-08T23:08:38.841Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[],"raw":{"guid":"security-advisories-10944","link":"https://cert.europa.eu/publications/security-advisories/2026-007/","title":"2026-007: Critical Vulnerability in Windows Netlogon","feedId":"cert-eu","feedUrl":"https://cert.europa.eu/publications/security-advisories-rss","categories":[],"description":"On 12 May 2026, Microsoft published a security advisory addressing a critical vulnerability affecting Windows Server when acting as a domain controller. This vulnerability allows an unauthenticated attacker to execute arbitrary code over a network. According to The Centre for Cybersecurity Belgium (CCB), this vulnerability is currently exploited by threat actors. It is strongly recommended updating affected Windows servers as soon as possible.","publishedAt":null}},{"id":"0c08caa6-ef24-4b00-982a-57310cf1d816","slug":"cert-eu-2026-008-critical-vulnerabilities-in-ivanti-sentry-c23975c6","externalId":"security-advisories-10945","source":"CERT-EU","sourceType":"vendor-rss","type":"security-news","title":"2026-008: Critical vulnerabilities in Ivanti Sentry","description":"On 9 June 2026, Ivanti released a security advisory addressing two critical vulnerabilities in their Sentry products[1]. An attacker could exploit those flaws to achieve unauthenticated remote code execution on the vulnerable device.","cveId":null,"cvssScore":null,"cvssVector":null,"severity":"unknown","vendor":null,"product":null,"affectedVersions":[],"cwes":[],"tags":["cert-eu","cert","advisory"],"relatedCves":[],"titleFingerprint":"008-2026-critical-ivanti-sentry-vulnerabilities","countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://cert.europa.eu/publications/security-advisories/2026-008/","type":"report","title":"CERT-EU: 2026-008: Critical vulnerabilities in Ivanti Sentry"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T23:08:38.780Z","addedAt":"2026-07-29T20:53:11.764Z","updatedAt":"2026-10-08T23:08:38.797Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[],"raw":{"guid":"security-advisories-10945","link":"https://cert.europa.eu/publications/security-advisories/2026-008/","title":"2026-008: Critical vulnerabilities in Ivanti Sentry","feedId":"cert-eu","feedUrl":"https://cert.europa.eu/publications/security-advisories-rss","categories":[],"description":"On 9 June 2026, Ivanti released a security advisory addressing two critical vulnerabilities in their Sentry products[1]. An attacker could exploit those flaws to achieve unauthenticated remote code execution on the vulnerable device.","publishedAt":null}},{"id":"bd0ac863-9c70-4ff3-8013-3a8d69255d5a","slug":"cert-eu-2026-009-critical-vulnerabilities-in-microsoft-sharepoint-0655a6ec","externalId":"security-advisories-10946","source":"CERT-EU","sourceType":"vendor-rss","type":"security-news","title":"2026-009: Critical Vulnerabilities in Microsoft SharePoint","description":"[UPDATED] On 14 July 2026, Microsoft released security updates addressing critical remote code execution (RCE) vulnerabilities in Microsoft SharePoint Server. On 20 July 2026, WatchTowr identified a proof-of-concept exploit code and subsequently observed active exploitation of CVE-2026-50522, a vulnerability part of an ongoing series of actively exploited flaws affecting on-premise SharePoint Server instances, including CVE-2026-32201, CVE-2026-45659, CVE-2026-56164, and CVE-2026-58644. CERT-EU strongly recommends updating affected servers immediately, rotating credentials for any assets that may have been exposed to the internet, and conducting a compromise assessment.","cveId":null,"cvssScore":null,"cvssVector":null,"severity":"unknown","vendor":null,"product":null,"affectedVersions":[],"cwes":[],"tags":["cert-eu","cert","advisory"],"relatedCves":["CVE-2026-50522","CVE-2026-32201","CVE-2026-45659","CVE-2026-56164","CVE-2026-58644"],"titleFingerprint":"009-2026-critical-microsoft-sharepoint-vulnerabilities","countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://cert.europa.eu/publications/security-advisories/2026-009/","type":"report","title":"CERT-EU: 2026-009: Critical Vulnerabilities in Microsoft SharePoint"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T23:08:38.670Z","addedAt":"2026-07-29T20:53:11.749Z","updatedAt":"2026-10-08T23:08:38.754Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[],"raw":{"guid":"security-advisories-10946","link":"https://cert.europa.eu/publications/security-advisories/2026-009/","title":"2026-009: Critical Vulnerabilities in Microsoft SharePoint","feedId":"cert-eu","feedUrl":"https://cert.europa.eu/publications/security-advisories-rss","categories":[],"description":"[UPDATED] On 14 July 2026, Microsoft released security updates addressing critical remote code execution (RCE) vulnerabilities in Microsoft SharePoint Server. On 20 July 2026, WatchTowr identified a proof-of-concept exploit code and subsequently observed active exploitation of CVE-2026-50522, a vulnerability part of an ongoing series of actively exploited flaws affecting on-premise SharePoint Server instances, including CVE-2026-32201, CVE-2026-45659, CVE-2026-56164, and CVE-2026-58644. CERT-EU strongly recommends updating affected servers immediately, rotating credentials for any assets that may have been exposed to the internet, and conducting a compromise assessment.","publishedAt":null}},{"id":"575186a7-238c-4906-894e-846f722e90ce","slug":"cert-eu-2026-010-critical-vulnerabilities-in-citrix-netscaler-adc-and-fe46d8f7","externalId":"security-advisories-10947","source":"CERT-EU","sourceType":"vendor-rss","type":"security-news","title":"2026-010: Critical Vulnerabilities in Citrix NetScaler ADC and NetScaler Gateway","description":"On 19 August 2026, Citrix published a security advisory addressing multiple critical vulnerabilities in NetScaler ADC (formerly Citrix ADC) and NetScaler Gateway (formerly Citrix Gateway). CERT-EU recommends updating affected devices as soon as possible.","cveId":null,"cvssScore":null,"cvssVector":null,"severity":"unknown","vendor":null,"product":null,"affectedVersions":[],"cwes":[],"tags":["cert-eu","cert","advisory"],"relatedCves":[],"titleFingerprint":"010-2026-adc-citrix-critical-gateway-netscaler-vulnerabilities","countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://cert.europa.eu/publications/security-advisories/2026-010/","type":"report","title":"CERT-EU: 2026-010: Critical Vulnerabilities in Citrix NetScaler ADC and NetScaler Gateway"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T23:08:38.601Z","addedAt":"2026-08-19T17:52:45.043Z","updatedAt":"2026-10-08T23:08:38.642Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[],"raw":{"guid":"security-advisories-10947","link":"https://cert.europa.eu/publications/security-advisories/2026-010/","title":"2026-010: Critical Vulnerabilities in Citrix NetScaler ADC and NetScaler Gateway","feedId":"cert-eu","feedUrl":"https://cert.europa.eu/publications/security-advisories-rss","categories":[],"description":"On 19 August 2026, Citrix published a security advisory addressing multiple critical vulnerabilities in NetScaler ADC (formerly Citrix ADC) and NetScaler Gateway (formerly Citrix Gateway). CERT-EU recommends updating affected devices as soon as possible.","publishedAt":null}},{"id":"9af889d7-c7c9-4d48-be17-8809bcc9b172","slug":"cert-eu-2026-011-critical-vulnerabilities-in-sap-kernel-and-netweaver-e1f9c0da","externalId":"security-advisories-10948","source":"CERT-EU","sourceType":"vendor-rss","type":"security-news","title":"2026-011: Critical Vulnerabilities in SAP Kernel and NetWeaver Message Server","description":"On 8 September 2026, as part of its September Security Patch Day, SAP released Security Notes addressing two critical vulnerabilities affecting a broad range of SAP products[3]. The most severe, CVE-2026-44756 (CVSS 10.0), is a memory corruption vulnerability in SAP Extended Passport (EPP) processing, nicknamed \"OVERPASS\" by the Onapsis Research Labs (ORL), which discovered and responsibly disclosed it[3]. The second, CVE-2026-58240 (CVSS 9.8), nicknamed \"S4GET\", is a missing authentication check in the SAP NetWeaver Message Server[6]. Both are remotely exploitable without authentication. According to the reporting researchers, successful exploitation of either can result in arbitrary operating system command execution under the account that owns the SAP installation, leading to full compromise of the affected system and the business data it holds[6]. CERT-EU strongly recommends applying SAP Security Notes 3747649 and 3759472 as soon as possible.","cveId":null,"cvssScore":null,"cvssVector":null,"severity":"unknown","vendor":null,"product":null,"affectedVersions":[],"cwes":[],"tags":["cert-eu","cert","advisory"],"relatedCves":["CVE-2026-44756","CVE-2026-58240"],"titleFingerprint":"011-2026-critical-kernel-message-netweaver-sap-server-vulnerabilities","countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://cert.europa.eu/publications/security-advisories/2026-011/","type":"report","title":"CERT-EU: 2026-011: Critical Vulnerabilities in SAP Kernel and NetWeaver Message Server"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T23:08:37.521Z","addedAt":"2026-09-09T13:52:48.713Z","updatedAt":"2026-10-08T23:08:37.526Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[],"raw":{"guid":"security-advisories-10948","link":"https://cert.europa.eu/publications/security-advisories/2026-011/","title":"2026-011: Critical Vulnerabilities in SAP Kernel and NetWeaver Message Server","feedId":"cert-eu","feedUrl":"https://cert.europa.eu/publications/security-advisories-rss","categories":[],"description":"On 8 September 2026, as part of its September Security Patch Day, SAP released Security Notes addressing two critical vulnerabilities affecting a broad range of SAP products[3]. The most severe, CVE-2026-44756 (CVSS 10.0), is a memory corruption vulnerability in SAP Extended Passport (EPP) processing, nicknamed \"OVERPASS\" by the Onapsis Research Labs (ORL), which discovered and responsibly disclosed it[3]. The second, CVE-2026-58240 (CVSS 9.8), nicknamed \"S4GET\", is a missing authentication check in the SAP NetWeaver Message Server[6]. Both are remotely exploitable without authentication. According to the reporting researchers, successful exploitation of either can result in arbitrary operating system command execution under the account that owns the SAP installation, leading to full compromise of the affected system and the business data it holds[6]. CERT-EU strongly recommends applying SAP Security Notes 3747649 and 3759472 as soon as possible.","publishedAt":null}},{"id":"bccbc3eb-a34b-4386-b109-d075a896487e","slug":"cert-eu-2026-012-critical-vulnerabilities-in-check-point-products-4032e2a7","externalId":"security-advisories-10949","source":"CERT-EU","sourceType":"vendor-rss","type":"security-news","title":"2026-012: Critical Vulnerabilities in Check Point Products","description":"On 9 September 2026, Check Point released emergency security updates addressing two critical vulnerabilities affecting Check Point Security Gateway, Security Management Server, and Spark Firewall deployments configured to use Remote Access VPN or Site-to-Site VPN. Both vulnerabilities carry a CVSS score of 9.8 and could allow an unauthenticated, remote attacker to execute arbitrary code on affected appliances. CERT-EU strongly recommends applying the available hotfixes as soon as possible, prioritising internet-facing and perimeter appliances.","cveId":null,"cvssScore":null,"cvssVector":null,"severity":"unknown","vendor":null,"product":null,"affectedVersions":[],"cwes":[],"tags":["cert-eu","cert","advisory"],"relatedCves":[],"titleFingerprint":"012-2026-check-critical-point-products-vulnerabilities","countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://cert.europa.eu/publications/security-advisories/2026-012/","type":"report","title":"CERT-EU: 2026-012: Critical Vulnerabilities in Check Point Products"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T23:08:37.507Z","addedAt":"2026-09-10T09:52:48.850Z","updatedAt":"2026-10-08T23:08:37.511Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[],"raw":{"guid":"security-advisories-10949","link":"https://cert.europa.eu/publications/security-advisories/2026-012/","title":"2026-012: Critical Vulnerabilities in Check Point Products","feedId":"cert-eu","feedUrl":"https://cert.europa.eu/publications/security-advisories-rss","categories":[],"description":"On 9 September 2026, Check Point released emergency security updates addressing two critical vulnerabilities affecting Check Point Security Gateway, Security Management Server, and Spark Firewall deployments configured to use Remote Access VPN or Site-to-Site VPN. Both vulnerabilities carry a CVSS score of 9.8 and could allow an unauthenticated, remote attacker to execute arbitrary code on affected appliances. CERT-EU strongly recommends applying the available hotfixes as soon as possible, prioritising internet-facing and perimeter appliances.","publishedAt":null}},{"id":"3ee43a16-fb67-40fd-a48d-04f30a304afb","slug":"cert-eu-2026-013-critical-vulnerability-in-f5-big-ip-apm-51045209","externalId":"security-advisories-10950","source":"CERT-EU","sourceType":"vendor-rss","type":"security-news","title":"2026-013: Critical Vulnerability in F5 BIG-IP APM","description":"On 22 September 2026, F5 published an advisory addressing a critical vulnerability affecting its BIG-IP APM product. The vendor confirmed active exploitation in the wild. CERT-EU recommends taking appropriate actions as soon as possible.","cveId":null,"cvssScore":null,"cvssVector":null,"severity":"unknown","vendor":null,"product":null,"affectedVersions":[],"cwes":[],"tags":["cert-eu","cert","advisory"],"relatedCves":[],"titleFingerprint":"013-2026-apm-big-critical-vulnerability","countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://cert.europa.eu/publications/security-advisories/2026-013/","type":"report","title":"CERT-EU: 2026-013: Critical Vulnerability in F5 BIG-IP APM"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T23:08:37.494Z","addedAt":"2026-09-22T17:52:51.274Z","updatedAt":"2026-10-08T23:08:37.499Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[],"raw":{"guid":"security-advisories-10950","link":"https://cert.europa.eu/publications/security-advisories/2026-013/","title":"2026-013: Critical Vulnerability in F5 BIG-IP APM","feedId":"cert-eu","feedUrl":"https://cert.europa.eu/publications/security-advisories-rss","categories":[],"description":"On 22 September 2026, F5 published an advisory addressing a critical vulnerability affecting its BIG-IP APM product. The vendor confirmed active exploitation in the wild. CERT-EU recommends taking appropriate actions as soon as possible.","publishedAt":null}},{"id":"09b3936f-9956-42a6-b8a6-767b3a26c4c0","slug":"cert-eu-2026-014-critical-vulnerabilities-in-citrix-netscaler-adc-and-97283b9b","externalId":"security-advisories-10951","source":"CERT-EU","sourceType":"vendor-rss","type":"security-news","title":"2026-014: Critical Vulnerabilities in Citrix NetScaler ADC and Gateway","description":"On 27 September 2026, Citrix published a security bulletin addressing 8 vulnerabilities affecting customer-managed Citrix NetScaler ADC and Citrix NetScaler Gateway, among which 2 critical unauthenticated Remote Code Execution (RCE) vulnerabilities. Citrix has confirmed active exploitation of these 2 critical vulnerabilities in the wild. CERT-EU recommends updating affected software and running a compromise assessment on those exposed on the internet.","cveId":null,"cvssScore":null,"cvssVector":null,"severity":"unknown","vendor":null,"product":null,"affectedVersions":[],"cwes":[],"tags":["cert-eu","cert","advisory"],"relatedCves":[],"titleFingerprint":"014-2026-adc-citrix-critical-gateway-netscaler-vulnerabilities","countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://cert.europa.eu/publications/security-advisories/2026-014/","type":"report","title":"CERT-EU: 2026-014: Critical Vulnerabilities in Citrix NetScaler ADC and Gateway"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T23:08:37.480Z","addedAt":"2026-09-27T17:52:52.207Z","updatedAt":"2026-10-08T23:08:37.485Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[],"raw":{"guid":"security-advisories-10951","link":"https://cert.europa.eu/publications/security-advisories/2026-014/","title":"2026-014: Critical Vulnerabilities in Citrix NetScaler ADC and Gateway","feedId":"cert-eu","feedUrl":"https://cert.europa.eu/publications/security-advisories-rss","categories":[],"description":"On 27 September 2026, Citrix published a security bulletin addressing 8 vulnerabilities affecting customer-managed Citrix NetScaler ADC and Citrix NetScaler Gateway, among which 2 critical unauthenticated Remote Code Execution (RCE) vulnerabilities. Citrix has confirmed active exploitation of these 2 critical vulnerabilities in the wild. CERT-EU recommends updating affected software and running a compromise assessment on those exposed on the internet.","publishedAt":null}},{"id":"b885881a-1119-42d6-9c78-b26206c5ef73","slug":"cert-eu-2026-015-critical-vulnerability-in-multiple-atlassian-products-429ad9ec","externalId":"security-advisories-10952","source":"CERT-EU","sourceType":"vendor-rss","type":"security-news","title":"2026-015: Critical Vulnerability in Multiple Atlassian Products","description":"On 5 October 2026, Atlassian published a security advisory addressing a critical arbitrary file access vulnerability. It affects Bitbucket Data Center, Confluence Data Center, Jira Service Management Data Center, Jira Software Data Center, Bamboo Data Center, Crowd Data Center, Crucible and Fisheye. CERT-EU strongly recommends upgrading all affected installations to a fixed version as soon as possible, starting with instances accessible from the internet. CERT-EU also recommends checking access logs for signs of exploitation.","cveId":null,"cvssScore":null,"cvssVector":null,"severity":"unknown","vendor":null,"product":null,"affectedVersions":[],"cwes":[],"tags":["cert-eu","cert","advisory"],"relatedCves":[],"titleFingerprint":"015-2026-atlassian-critical-multiple-products-vulnerability","countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://cert.europa.eu/publications/security-advisories/2026-015/","type":"report","title":"CERT-EU: 2026-015: Critical Vulnerability in Multiple Atlassian Products"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T23:08:37.409Z","addedAt":"2026-10-07T08:41:26.469Z","updatedAt":"2026-10-08T23:08:37.459Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[],"raw":{"guid":"security-advisories-10952","link":"https://cert.europa.eu/publications/security-advisories/2026-015/","title":"2026-015: Critical Vulnerability in Multiple Atlassian Products","feedId":"cert-eu","feedUrl":"https://cert.europa.eu/publications/security-advisories-rss","categories":[],"description":"On 5 October 2026, Atlassian published a security advisory addressing a critical arbitrary file access vulnerability. It affects Bitbucket Data Center, Confluence Data Center, Jira Service Management Data Center, Jira Software Data Center, Bamboo Data Center, Crowd Data Center, Crucible and Fisheye. CERT-EU strongly recommends upgrading all affected installations to a fixed version as soon as possible, starting with instances accessible from the internet. CERT-EU also recommends checking access logs for signs of exploitation.","publishedAt":null}},{"id":"fcbd75a9-c659-425b-bdd7-b38195d25402","slug":"cve-2026-89091","externalId":"CVE-2026-89091","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-89091 — A flaw was found in ansible-core.","description":"A flaw was found in ansible-core. When installing a collection with\n`ansible-galaxy collection install`, the archive extractor validates member\npaths using lexical path normalisation (os.path.abspath) instead of resolving\nsymbolic links (os.path.realpath), and it performs no containment check on\nsymlink-typed directory members before creating them. A crafted collection\ntarball can chain symlink directory entries so that a subsequent file member is\nwritten outside the intended destination directory. This allows an attacker who\ncan get a victim to install a malicious collection to overwrite arbitrary files\nwith the privileges of the user running ansible-galaxy, leading to code\nexecution on the control node. This is a bypass of the fix for CVE-2020-10691.","cveId":"CVE-2026-89091","cvssScore":8.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","severity":"high","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-59"],"tags":["nvd","status:received"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-89091","type":"advisory","title":"secalert@redhat.com"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2531646","type":"advisory","title":"secalert@redhat.com"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T22:17:35.777Z","addedAt":"2026-10-08T23:06:40.701Z","updatedAt":"2026-10-08T23:06:40.701Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-89091","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-89091","note":"authoritative record"}],"raw":{"id":"CVE-2026-89091","cveTags":[],"metrics":{"cvssMetricV31":[{"type":"Primary","source":"secalert@redhat.com","cvssData":{"scope":"UNCHANGED","version":"3.1","baseScore":8.8,"attackVector":"NETWORK","baseSeverity":"HIGH","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","integrityImpact":"HIGH","userInteraction":"REQUIRED","attackComplexity":"LOW","availabilityImpact":"HIGH","privilegesRequired":"NONE","confidentialityImpact":"HIGH"},"impactScore":5.9,"exploitabilityScore":2.8}]},"affected":[{"source":"secalert@redhat.com","affectedData":[{"cpes":["cpe:/a:redhat:migration_toolkit_applications:8"],"vendor":"Red Hat","product":"Migration Toolkit for Applications 8","packageName":"mta/mta-rhel9-operator","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"unaffected"},{"cpes":["cpe:/a:redhat:migration_toolkit_virtualization:2"],"vendor":"Red Hat","product":"Migration Toolkit for Virtualization","packageName":"migration-toolkit-virtualization/mtv-rhel9-operator","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"unaffected"},{"cpes":["cpe:/a:redhat:service_mesh:3"],"vendor":"Red Hat","product":"OpenShift Service Mesh 3","packageName":"openshift-service-mesh/kiali-rhel9-operator","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"unaffected"},{"cpes":["cpe:/a:redhat:acm:2"],"vendor":"Red Hat","product":"Red Hat Advanced Cluster Management for Kubernetes 2","packageName":"rhacm2/volsync-operator-bundle","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:acm:2"],"vendor":"Red Hat","product":"Red Hat Advanced Cluster Management for Kubernetes 2","packageName":"rhacm2/volsync-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-24/de-minimal-rhel8","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"unaffected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-24/de-minimal-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"unaffected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-24/ee-minimal-rhel8","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-24/ee-minimal-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-24/hub-rhel8","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-24/lightspeed-rhel8","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"unaffected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-25/ansible-dev-tools-rhel8","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-25/de-minimal-rhel8","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"unaffected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-25/de-minimal-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"unaffected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-25/eda-controller-rhel8","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"unaffected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-25/ee-minimal-rhel8","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-25/ee-minimal-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-25/hub-rhel8","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-25/lightspeed-rhel8","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"unaffected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-26/ansible-dev-tools-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-26/controller-rhel9-operator","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-26/de-minimal-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-26/de-supported-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-26/eda-controller-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-26/eda-controller-rhel9-operator","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-26/ee-minimal-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-26/ee-supported-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-26/gateway-rhel9-operator","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-26/hub-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-26/hub-rhel9-operator","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-26/lightspeed-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"unaffected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-26/lightspeed-rhel9-operator","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-26/platform-resource-rhel9-operator","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-26/platform-resource-runner-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-27/aap-cloud-billing-operator-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-27/ansible-devspaces-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-27/ansible-dev-tools-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-27/controller-rhel9-operator","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-27/de-minimal-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-27/de-supported-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-27/eda-controller-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-27/eda-controller-rhel9-operator","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-27/ee-minimal-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-27/ee-supported-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-27/gateway-rhel9-operator","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-27/hub-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-27/hub-rhel9-operator","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-27/lightspeed-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"unaffected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-27/lightspeed-rhel9-operator","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-27/metrics-service-rhel9-operator","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-27/platform-resource-rhel9-operator","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-27/platform-resource-runner-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-tech-preview/ansible-devspaces-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-automation-platform-tech-preview/metrics-service-rhel9-operator","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_automation_platform:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform 2","packageName":"ansible-core","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_core:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform Ansible Core 2","packageName":"ansible-automation-platform/ee-minimal-rhel8","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_core:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform Ansible Core 2","packageName":"ansible-automation-platform/ee-minimal-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_core:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform Ansible Core 2","packageName":"ansible-automation-platform-tech-preview/ee-minimal-rhel8","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_core:2"],"vendor":"Red Hat","product":"Red Hat Ansible Automation Platform Ansible Core 2","packageName":"ansible-automation-platform-tech-preview/ee-minimal-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:certifications:9"],"vendor":"Red Hat","product":"Red Hat Certification Program for Red Hat Enterprise Linux 9","packageName":"rhcertification/redhat-certification-system-ai","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"unaffected"},{"cpes":["cpe:/a:redhat:discovery:2::el9"],"vendor":"Red Hat","product":"Red Hat Discovery 2","packageName":"discovery/discovery-server-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/o:redhat:enterprise_linux:10"],"vendor":"Red Hat","product":"Red Hat Enterprise Linux 10","packageName":"ansible-core","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/o:redhat:enterprise_linux:8"],"vendor":"Red Hat","product":"Red Hat Enterprise Linux 8","packageName":"ansible-core","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/o:redhat:enterprise_linux:9"],"vendor":"Red Hat","product":"Red Hat Enterprise Linux 9","packageName":"ansible-core","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:openshift:4"],"vendor":"Red Hat","product":"Red Hat OpenShift Container Platform 4","packageName":"openshift4/ose-ansible-rhel9-operator","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:openstack:17.1"],"vendor":"Red Hat","product":"Red Hat OpenStack Platform 17.1","packageName":"openstack-ansible-core","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:openstack:18.0"],"vendor":"Red Hat","product":"Red Hat OpenStack Platform 18.0","packageName":"rhoso-operators/ee-openstack-ansible-ee-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"unaffected"},{"cpes":["cpe:/a:redhat:satellite:6"],"vendor":"Red Hat","product":"Red Hat Satellite 6","packageName":"ansible-core","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:rhui:5::el9"],"vendor":"Red Hat","product":"Red Hat Update Infrastructure 5","packageName":"rhui5/installer-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:rhui:5::el9"],"vendor":"Red Hat","product":"Red Hat Update Infrastructure 5","packageName":"rhui5/installer-tp-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:rhui:5::el9"],"vendor":"Red Hat","product":"Red Hat Update Infrastructure 5","packageName":"rhui5/rhua-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:rhui:5::el9"],"vendor":"Red Hat","product":"Red Hat Update Infrastructure 5","packageName":"rhui5/rhua-tp-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"},{"cpes":["cpe:/a:redhat:ansible_portal:2"],"vendor":"Red Hat","product":"Self-service automation portal 2","packageName":"ansible-automation-platform/bootc-automation-portal-rhel9","collectionURL":"https://access.redhat.com/downloads/content/package-browser/","defaultStatus":"affected"}]}],"published":"2026-10-08T22:17:35.777","references":[{"url":"https://access.redhat.com/security/cve/CVE-2026-89091","source":"secalert@redhat.com"},{"url":"https://bugzilla.redhat.com/show_bug.cgi?id=2531646","source":"secalert@redhat.com"}],"vulnStatus":"Received","weaknesses":[{"type":"Primary","source":"secalert@redhat.com","description":[{"lang":"en","value":"CWE-59"}]}],"descriptions":[{"lang":"en","value":"A flaw was found in ansible-core. When installing a collection with\n`ansible-galaxy collection install`, the archive extractor validates member\npaths using lexical path normalisation (os.path.abspath) instead of resolving\nsymbolic links (os.path.realpath), and it performs no containment check on\nsymlink-typed directory members before creating them. A crafted collection\ntarball can chain symlink directory entries so that a subsequent file member is\nwritten outside the intended destination directory. This allows an attacker who\ncan get a victim to install a malicious collection to overwrite arbitrary files\nwith the privileges of the user running ansible-galaxy, leading to code\nexecution on the control node. This is a bypass of the fix for CVE-2020-10691."}],"lastModified":"2026-10-08T22:17:35.777","sourceIdentifier":"secalert@redhat.com"}},{"id":"11344a98-58bd-4d07-89b9-aa15af45f4d4","slug":"cve-2026-87980","externalId":"CVE-2026-87980","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-87980 — IBM Guardium Data Protection 12.0, 12.1, and 12.2 could allow a local attacker to obtain sensitive information due to cleartext storage of sensitiv…","description":"IBM Guardium Data Protection 12.0, 12.1, and 12.2 could allow a local attacker to obtain sensitive information due to cleartext storage of sensitive information in logs.","cveId":"CVE-2026-87980","cvssScore":3.1,"cvssVector":"CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N","severity":"low","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-532"],"tags":["nvd","status:received"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7291672","type":"advisory","title":"psirt@us.ibm.com"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T22:17:35.577Z","addedAt":"2026-10-08T23:06:40.681Z","updatedAt":"2026-10-08T23:06:40.681Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-87980","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-87980","note":"authoritative record"}],"raw":{"id":"CVE-2026-87980","cveTags":[],"metrics":{"cvssMetricV31":[{"type":"Primary","source":"psirt@us.ibm.com","cvssData":{"scope":"UNCHANGED","version":"3.1","baseScore":3.1,"attackVector":"NETWORK","baseSeverity":"LOW","vectorString":"CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N","integrityImpact":"NONE","userInteraction":"NONE","attackComplexity":"HIGH","availabilityImpact":"NONE","privilegesRequired":"LOW","confidentialityImpact":"LOW"},"impactScore":1.4,"exploitabilityScore":1.6}]},"affected":[{"source":"psirt@us.ibm.com","affectedData":[{"cpes":["cpe:2.3:a:ibm:guardium_data_protection:12.0:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.0.0:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.1:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.1.0:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.2:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.2.0:*:*:*:*:*:*:*"],"vendor":"IBM","product":"Guardium Data Protection","versions":[{"status":"affected","version":"12.0"},{"status":"affected","version":"12.1"},{"status":"affected","version":"12.2"}]}]}],"published":"2026-10-08T22:17:35.577","references":[{"url":"https://www.ibm.com/support/pages/node/7291672","source":"psirt@us.ibm.com"}],"vulnStatus":"Received","weaknesses":[{"type":"Primary","source":"psirt@us.ibm.com","description":[{"lang":"en","value":"CWE-532"}]}],"descriptions":[{"lang":"en","value":"IBM Guardium Data Protection 12.0, 12.1, and 12.2 could allow a local attacker to obtain sensitive information due to cleartext storage of sensitive information in logs."}],"lastModified":"2026-10-08T22:17:35.577","sourceIdentifier":"psirt@us.ibm.com"}},{"id":"3bc71483-7c2f-464f-82c9-bfb79d61bb5b","slug":"cve-2026-84891","externalId":"CVE-2026-84891","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-84891 — IBM Guardium Data Protection 12.0, 12.1, and 12.2 could allow a remote attacker to obtain sensitive information due to use of hard-coded credentials.","description":"IBM Guardium Data Protection 12.0, 12.1, and 12.2 could allow a remote attacker to obtain sensitive information due to use of hard-coded credentials.","cveId":"CVE-2026-84891","cvssScore":5.9,"cvssVector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","severity":"medium","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-798"],"tags":["nvd","status:received"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7291675","type":"advisory","title":"psirt@us.ibm.com"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T22:17:34.573Z","addedAt":"2026-10-08T23:06:40.666Z","updatedAt":"2026-10-08T23:06:40.666Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84891","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-84891","note":"authoritative record"}],"raw":{"id":"CVE-2026-84891","cveTags":[],"metrics":{"cvssMetricV31":[{"type":"Primary","source":"psirt@us.ibm.com","cvssData":{"scope":"UNCHANGED","version":"3.1","baseScore":5.9,"attackVector":"NETWORK","baseSeverity":"MEDIUM","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","integrityImpact":"NONE","userInteraction":"NONE","attackComplexity":"HIGH","availabilityImpact":"NONE","privilegesRequired":"NONE","confidentialityImpact":"HIGH"},"impactScore":3.6,"exploitabilityScore":2.2}]},"affected":[{"source":"psirt@us.ibm.com","affectedData":[{"cpes":["cpe:2.3:a:ibm:guardium_data_protection:12.0:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.0.0:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.1:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.1.0:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.2:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.2.0:*:*:*:*:*:*:*"],"vendor":"IBM","product":"Guardium Data Protection","versions":[{"status":"affected","version":"12.0"},{"status":"affected","version":"12.1"},{"status":"affected","version":"12.2"}]}]}],"published":"2026-10-08T22:17:34.573","references":[{"url":"https://www.ibm.com/support/pages/node/7291675","source":"psirt@us.ibm.com"}],"vulnStatus":"Received","weaknesses":[{"type":"Primary","source":"psirt@us.ibm.com","description":[{"lang":"en","value":"CWE-798"}]}],"descriptions":[{"lang":"en","value":"IBM Guardium Data Protection 12.0, 12.1, and 12.2 could allow a remote attacker to obtain sensitive information due to use of hard-coded credentials."}],"lastModified":"2026-10-08T22:17:34.573","sourceIdentifier":"psirt@us.ibm.com"}},{"id":"b611e2f3-1086-40b1-8cf1-4014d7ae4e8e","slug":"cve-2026-84875","externalId":"CVE-2026-84875","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-84875 — IBM Guardium Data Protection 12.0, 12.1, and 12.2 could allow a remote attacker to execute arbitrary code due to a buffer overflow.","description":"IBM Guardium Data Protection 12.0, 12.1, and 12.2 could allow a remote attacker to execute arbitrary code due to a buffer overflow.","cveId":"CVE-2026-84875","cvssScore":7.5,"cvssVector":"CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","severity":"high","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-119"],"tags":["nvd","status:received"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7291674","type":"advisory","title":"psirt@us.ibm.com"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T22:17:34.430Z","addedAt":"2026-10-08T23:06:40.648Z","updatedAt":"2026-10-08T23:06:40.648Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84875","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-84875","note":"authoritative record"}],"raw":{"id":"CVE-2026-84875","cveTags":[],"metrics":{"cvssMetricV31":[{"type":"Primary","source":"psirt@us.ibm.com","cvssData":{"scope":"UNCHANGED","version":"3.1","baseScore":7.5,"attackVector":"NETWORK","baseSeverity":"HIGH","vectorString":"CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","integrityImpact":"HIGH","userInteraction":"NONE","attackComplexity":"HIGH","availabilityImpact":"HIGH","privilegesRequired":"LOW","confidentialityImpact":"HIGH"},"impactScore":5.9,"exploitabilityScore":1.6}]},"affected":[{"source":"psirt@us.ibm.com","affectedData":[{"cpes":["cpe:2.3:a:ibm:guardium_data_protection:12.0:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.0.0:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.1:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.1.0:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.2:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.2.0:*:*:*:*:*:*:*"],"vendor":"IBM","product":"Guardium Data Protection","versions":[{"status":"affected","version":"12.0"},{"status":"affected","version":"12.1"},{"status":"affected","version":"12.2"}]}]}],"published":"2026-10-08T22:17:34.430","references":[{"url":"https://www.ibm.com/support/pages/node/7291674","source":"psirt@us.ibm.com"}],"vulnStatus":"Received","weaknesses":[{"type":"Primary","source":"psirt@us.ibm.com","description":[{"lang":"en","value":"CWE-119"}]}],"descriptions":[{"lang":"en","value":"IBM Guardium Data Protection 12.0, 12.1, and 12.2 could allow a remote attacker to execute arbitrary code due to a buffer overflow."}],"lastModified":"2026-10-08T22:17:34.430","sourceIdentifier":"psirt@us.ibm.com"}},{"id":"b5fbe3dc-9843-4c92-ae6f-e67babc31686","slug":"cve-2026-84249","externalId":"CVE-2026-84249","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-84249 — IBM Guardium Data Protection 12.2, and 12.2.2 could allow a remote attacker to execute arbitrary management operations due to missing authenticatio…","description":"IBM Guardium Data Protection 12.2, and 12.2.2 could allow a remote attacker to execute arbitrary management operations due to missing authentication for critical function.","cveId":"CVE-2026-84249","cvssScore":9.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","severity":"critical","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-306"],"tags":["nvd","status:received"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7288036","type":"advisory","title":"psirt@us.ibm.com"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T22:17:34.213Z","addedAt":"2026-10-08T23:06:40.635Z","updatedAt":"2026-10-08T23:06:40.635Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84249","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-84249","note":"authoritative record"}],"raw":{"id":"CVE-2026-84249","cveTags":[],"metrics":{"cvssMetricV31":[{"type":"Primary","source":"psirt@us.ibm.com","cvssData":{"scope":"UNCHANGED","version":"3.1","baseScore":9.8,"attackVector":"NETWORK","baseSeverity":"CRITICAL","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","integrityImpact":"HIGH","userInteraction":"NONE","attackComplexity":"LOW","availabilityImpact":"HIGH","privilegesRequired":"NONE","confidentialityImpact":"HIGH"},"impactScore":5.9,"exploitabilityScore":3.9}]},"affected":[{"source":"psirt@us.ibm.com","affectedData":[{"cpes":["cpe:2.3:a:ibm:guardium_data_protection:12.2:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.2.0:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.2.2:*:*:*:*:*:*:*"],"vendor":"IBM","product":"Guardium Data Protection","versions":[{"status":"affected","version":"12.2"},{"status":"affected","version":"12.2.2"}]}]}],"published":"2026-10-08T22:17:34.213","references":[{"url":"https://www.ibm.com/support/pages/node/7288036","source":"psirt@us.ibm.com"}],"vulnStatus":"Received","weaknesses":[{"type":"Primary","source":"psirt@us.ibm.com","description":[{"lang":"en","value":"CWE-306"}]}],"descriptions":[{"lang":"en","value":"IBM Guardium Data Protection 12.2, and 12.2.2 could allow a remote attacker to execute arbitrary management operations due to missing authentication for critical function."}],"lastModified":"2026-10-08T22:17:34.213","sourceIdentifier":"psirt@us.ibm.com"}},{"id":"54fb719b-efbb-4817-9ddf-fa8104ea279a","slug":"cve-2026-84247","externalId":"CVE-2026-84247","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-84247 — IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to cause a denial of service due to a path traversal vulnerability.","description":"IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to cause a denial of service due to a path traversal vulnerability.","cveId":"CVE-2026-84247","cvssScore":8.1,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H","severity":"high","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-22"],"tags":["nvd","status:received"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7288035","type":"advisory","title":"psirt@us.ibm.com"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T22:17:33.987Z","addedAt":"2026-10-08T23:06:40.621Z","updatedAt":"2026-10-08T23:06:40.621Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84247","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-84247","note":"authoritative record"}],"raw":{"id":"CVE-2026-84247","cveTags":[],"metrics":{"cvssMetricV31":[{"type":"Primary","source":"psirt@us.ibm.com","cvssData":{"scope":"UNCHANGED","version":"3.1","baseScore":8.1,"attackVector":"NETWORK","baseSeverity":"HIGH","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H","integrityImpact":"HIGH","userInteraction":"NONE","attackComplexity":"LOW","availabilityImpact":"HIGH","privilegesRequired":"LOW","confidentialityImpact":"NONE"},"impactScore":5.2,"exploitabilityScore":2.8}]},"affected":[{"source":"psirt@us.ibm.com","affectedData":[{"cpes":["cpe:2.3:a:ibm:guardium_data_protection:12.2:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.2.0:*:*:*:*:*:*:*"],"vendor":"IBM","product":"Guardium Data Protection","versions":[{"status":"affected","version":"12.2"}]}]}],"published":"2026-10-08T22:17:33.987","references":[{"url":"https://www.ibm.com/support/pages/node/7288035","source":"psirt@us.ibm.com"}],"vulnStatus":"Received","weaknesses":[{"type":"Primary","source":"psirt@us.ibm.com","description":[{"lang":"en","value":"CWE-22"}]}],"descriptions":[{"lang":"en","value":"IBM Guardium Data Protection 12.2 could allow a remote authenticated attacker to cause a denial of service due to a path traversal vulnerability."}],"lastModified":"2026-10-08T22:17:33.987","sourceIdentifier":"psirt@us.ibm.com"}},{"id":"9cd37cf1-94ad-4725-b6c9-33328c626735","slug":"cve-2026-84246","externalId":"CVE-2026-84246","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-84246 — IBM Guardium Data Protection 12.0, 12.1, and 12.2 could allow a remote attacker to execute arbitrary code due to a buffer overflow.","description":"IBM Guardium Data Protection 12.0, 12.1, and 12.2 could allow a remote attacker to execute arbitrary code due to a buffer overflow.","cveId":"CVE-2026-84246","cvssScore":8.1,"cvssVector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","severity":"high","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-120"],"tags":["nvd","status:received"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7291674","type":"advisory","title":"psirt@us.ibm.com"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T22:17:33.850Z","addedAt":"2026-10-08T23:06:40.608Z","updatedAt":"2026-10-08T23:06:40.608Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84246","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-84246","note":"authoritative record"}],"raw":{"id":"CVE-2026-84246","cveTags":[],"metrics":{"cvssMetricV31":[{"type":"Primary","source":"psirt@us.ibm.com","cvssData":{"scope":"UNCHANGED","version":"3.1","baseScore":8.1,"attackVector":"NETWORK","baseSeverity":"HIGH","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","integrityImpact":"HIGH","userInteraction":"NONE","attackComplexity":"HIGH","availabilityImpact":"HIGH","privilegesRequired":"NONE","confidentialityImpact":"HIGH"},"impactScore":5.9,"exploitabilityScore":2.2}]},"affected":[{"source":"psirt@us.ibm.com","affectedData":[{"cpes":["cpe:2.3:a:ibm:guardium_data_protection:12.0:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.0.0:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.1:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.1.0:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.2:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.2.0:*:*:*:*:*:*:*"],"vendor":"IBM","product":"Guardium Data Protection","versions":[{"status":"affected","version":"12.0"},{"status":"affected","version":"12.1"},{"status":"affected","version":"12.2"}]}]}],"published":"2026-10-08T22:17:33.850","references":[{"url":"https://www.ibm.com/support/pages/node/7291674","source":"psirt@us.ibm.com"}],"vulnStatus":"Received","weaknesses":[{"type":"Primary","source":"psirt@us.ibm.com","description":[{"lang":"en","value":"CWE-120"}]}],"descriptions":[{"lang":"en","value":"IBM Guardium Data Protection 12.0, 12.1, and 12.2 could allow a remote attacker to execute arbitrary code due to a buffer overflow."}],"lastModified":"2026-10-08T22:17:33.850","sourceIdentifier":"psirt@us.ibm.com"}},{"id":"be3fd0b6-b5a9-4ffb-9332-d748603925d0","slug":"cve-2026-84230","externalId":"CVE-2026-84230","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-84230 — IBM Guardium Data Protection 12.2.2 could allow a remote attacker to cause a denial of service due to a race condition resulting from concurrent un…","description":"IBM Guardium Data Protection 12.2.2 could allow a remote attacker to cause a denial of service due to a race condition resulting from concurrent unsynchronized writes to a shared map.","cveId":"CVE-2026-84230","cvssScore":7.5,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","severity":"high","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-362"],"tags":["nvd","status:received"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7288627","type":"advisory","title":"psirt@us.ibm.com"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T22:17:33.727Z","addedAt":"2026-10-08T23:06:40.595Z","updatedAt":"2026-10-08T23:06:40.595Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84230","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-84230","note":"authoritative record"}],"raw":{"id":"CVE-2026-84230","cveTags":[],"metrics":{"cvssMetricV31":[{"type":"Primary","source":"psirt@us.ibm.com","cvssData":{"scope":"UNCHANGED","version":"3.1","baseScore":7.5,"attackVector":"NETWORK","baseSeverity":"HIGH","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","integrityImpact":"NONE","userInteraction":"NONE","attackComplexity":"LOW","availabilityImpact":"HIGH","privilegesRequired":"NONE","confidentialityImpact":"NONE"},"impactScore":3.6,"exploitabilityScore":3.9}]},"affected":[{"source":"psirt@us.ibm.com","affectedData":[{"cpes":["cpe:2.3:a:ibm:guardium_data_protection:12.2.2:*:*:*:*:*:*:*"],"vendor":"IBM","product":"Guardium Data Protection","versions":[{"status":"affected","version":"12.2.2"}]}]}],"published":"2026-10-08T22:17:33.727","references":[{"url":"https://www.ibm.com/support/pages/node/7288627","source":"psirt@us.ibm.com"}],"vulnStatus":"Received","weaknesses":[{"type":"Primary","source":"psirt@us.ibm.com","description":[{"lang":"en","value":"CWE-362"}]}],"descriptions":[{"lang":"en","value":"IBM Guardium Data Protection 12.2.2 could allow a remote attacker to cause a denial of service due to a race condition resulting from concurrent unsynchronized writes to a shared map."}],"lastModified":"2026-10-08T22:17:33.727","sourceIdentifier":"psirt@us.ibm.com"}},{"id":"dcda3691-6c27-4913-a73e-2c3039eae015","slug":"cve-2026-84209","externalId":"CVE-2026-84209","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-84209 — IBM Guardium Data Protection 12.2.2, and 12.1 could allow a remote attacker to execute arbitrary SQL commands due to improper neutralization of spe…","description":"IBM Guardium Data Protection 12.2.2, and 12.1 could allow a remote attacker to execute arbitrary SQL commands due to improper neutralization of special elements used in an SQL command.","cveId":"CVE-2026-84209","cvssScore":8.1,"cvssVector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","severity":"high","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-89"],"tags":["nvd","status:received"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7288832","type":"advisory","title":"psirt@us.ibm.com"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T22:17:33.583Z","addedAt":"2026-10-08T23:06:40.579Z","updatedAt":"2026-10-08T23:06:40.579Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84209","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-84209","note":"authoritative record"}],"raw":{"id":"CVE-2026-84209","cveTags":[],"metrics":{"cvssMetricV31":[{"type":"Primary","source":"psirt@us.ibm.com","cvssData":{"scope":"UNCHANGED","version":"3.1","baseScore":8.1,"attackVector":"NETWORK","baseSeverity":"HIGH","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","integrityImpact":"HIGH","userInteraction":"NONE","attackComplexity":"HIGH","availabilityImpact":"HIGH","privilegesRequired":"NONE","confidentialityImpact":"HIGH"},"impactScore":5.9,"exploitabilityScore":2.2}]},"affected":[{"source":"psirt@us.ibm.com","affectedData":[{"cpes":["cpe:2.3:a:ibm:guardium_data_protection:12.2.2:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.1:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.1.0:*:*:*:*:*:*:*"],"vendor":"IBM","product":"Guardium Data Protection","versions":[{"status":"affected","version":"12.2.2"},{"status":"affected","version":"12.1"}]}]}],"published":"2026-10-08T22:17:33.583","references":[{"url":"https://www.ibm.com/support/pages/node/7288832","source":"psirt@us.ibm.com"}],"vulnStatus":"Received","weaknesses":[{"type":"Primary","source":"psirt@us.ibm.com","description":[{"lang":"en","value":"CWE-89"}]}],"descriptions":[{"lang":"en","value":"IBM Guardium Data Protection 12.2.2, and 12.1 could allow a remote attacker to execute arbitrary SQL commands due to improper neutralization of special elements used in an SQL command."}],"lastModified":"2026-10-08T22:17:33.583","sourceIdentifier":"psirt@us.ibm.com"}},{"id":"6871826b-a002-4b59-8a57-031b53ab257a","slug":"cve-2026-84198","externalId":"CVE-2026-84198","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-84198 — IBM Guardium Data Protection 12.0, 12.1, and 12.2 could allow a remote attacker to execute arbitrary code due to a buffer overflow.","description":"IBM Guardium Data Protection 12.0, 12.1, and 12.2 could allow a remote attacker to execute arbitrary code due to a buffer overflow.","cveId":"CVE-2026-84198","cvssScore":8.1,"cvssVector":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","severity":"high","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-120"],"tags":["nvd","status:received"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7291674","type":"advisory","title":"psirt@us.ibm.com"}],"epssScore":null,"epssPercentile":null,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-08T22:17:33.457Z","addedAt":"2026-10-08T23:06:40.566Z","updatedAt":"2026-10-08T23:06:40.566Z","epssUpdatedAt":null,"nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84198","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-84198","note":"authoritative record"}],"raw":{"id":"CVE-2026-84198","cveTags":[],"metrics":{"cvssMetricV31":[{"type":"Primary","source":"psirt@us.ibm.com","cvssData":{"scope":"UNCHANGED","version":"3.1","baseScore":8.1,"attackVector":"NETWORK","baseSeverity":"HIGH","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","integrityImpact":"HIGH","userInteraction":"NONE","attackComplexity":"HIGH","availabilityImpact":"HIGH","privilegesRequired":"NONE","confidentialityImpact":"HIGH"},"impactScore":5.9,"exploitabilityScore":2.2}]},"affected":[{"source":"psirt@us.ibm.com","affectedData":[{"cpes":["cpe:2.3:a:ibm:guardium_data_protection:12.0:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.0.0:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.1:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.1.0:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.2:*:*:*:*:*:*:*","cpe:2.3:a:ibm:guardium_data_protection:12.2.0:*:*:*:*:*:*:*"],"vendor":"IBM","product":"Guardium Data Protection","versions":[{"status":"affected","version":"12.0"},{"status":"affected","version":"12.1"},{"status":"affected","version":"12.2"}]}]}],"published":"2026-10-08T22:17:33.457","references":[{"url":"https://www.ibm.com/support/pages/node/7291674","source":"psirt@us.ibm.com"}],"vulnStatus":"Received","weaknesses":[{"type":"Primary","source":"psirt@us.ibm.com","description":[{"lang":"en","value":"CWE-120"}]}],"descriptions":[{"lang":"en","value":"IBM Guardium Data Protection 12.0, 12.1, and 12.2 could allow a remote attacker to execute arbitrary code due to a buffer overflow."}],"lastModified":"2026-10-08T22:17:33.457","sourceIdentifier":"psirt@us.ibm.com"}}],"pagination":{"page":1,"limit":20,"total":208354,"totalPages":10418,"hasNext":true,"hasPrev":false}},"meta":{"apiVersion":"v1","requestedAt":"2026-10-08T23:10:30.459Z","durationMs":696,"filters":{"search":null,"severity":[],"type":[],"country":[],"tag":[],"cwe":[],"vendor":null,"product":null,"cve":null,"source":[],"days":null,"publishedAfter":null,"publishedBefore":null,"minCvss":null,"maxCvss":null,"minEpss":null,"knownExploited":null,"hasPatch":null,"hasNucleiTemplate":null},"sort":"newest","unknownParams":["include"],"warnings":[]}}