NVD disclosure day

Published threat advisories for April 22, 2026

CVE advisoryCRITICAL

CVE-2026-26354

Dell PowerProtect Data Domain can be compromised remotely to execute commands

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

An external attacker could gain full administrative control over Dell PowerProtect Data Domain systems by sending specific network requests. This exposes critical backup data to potential theft, tampering, or disruption, threatening the integrity of enterprise data protection.

CVE advisoryCRITICAL

CVE-2026-32885

DDEV could allow internal attacker to overwrite files on developer computers

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

DDEV is vulnerable to an internal attacker who could use malicious archives to overwrite critical files on a developer's computer. This could allow unauthorized control over the machine, risking the integrity of proprietary code and local development environments.

CVE advisoryCRITICAL

CVE-2018-25272

ELBA5 allows attackers to steal database passwords and run commands on your systems

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

An external attacker can take advantage of default credentials in the ELBA5 database to gain administrative access. This allows them to run unauthorized commands, steal sensitive business data, and take complete control of the host server.

CVE advisoryCRITICAL

CVE-2026-6356

Standard users can gain full admin control of Augmentt to access sensitive data

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A flaw in the web application allows an internal attacker with a standard account to gain full administrative access. This could enable unauthorized changes to critical system configurations and expose sensitive organizational or user data.

CVE advisoryCRITICAL

CVE-2026-31501

Linux kernel flaw lets attackers disrupt services and access sensitive files

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

An external attacker can send specific network traffic to exploit a vulnerability in the Linux kernel’s TI ICSSG PRU Ethernet driver. This flaw could cause a system crash, resulting in service outages or potentially allowing unauthorized access to the affected system.

CVE advisoryCRITICAL

CVE-2026-31478

Linux kernel vulnerability could let attackers take control or disrupt services

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

An external attacker can exploit a flaw in the Linux file-sharing service by sending malicious network requests to crash the system or gain unauthorized access to sensitive files. This vulnerability threatens the stability of business operations and the security of corporate data.

CVE advisoryCRITICAL

CVE-2026-31436

Linux kernel DMA driver could allow internal attacker to cause system crashes or data errors.

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A logic error in the Linux kernel could allow an internal attacker to trigger system crashes or memory corruption. This flaw threatens business continuity by enabling individuals with local system access to disrupt service availability or destabilize host operations.

CVE advisoryKnown Exploit

CVE-2026-31431

Linux Kernel could allow internal attacker to gain administrator access

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

An internal attacker with standard user access can exploit a flaw in the Linux kernel to gain full administrative control over the host. This allows them to modify sensitive system files, resulting in a complete compromise of the system.

• CISA KEV

CVE advisoryCRITICAL

CVE-2026-41144

F' (F Prime) could allow an external attacker to take control of embedded systems

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

An external attacker can exploit F' (F Prime) to overwrite critical files on embedded hardware, potentially granting them full control over the device. This capability allows unauthorized system access, creating a serious security risk for critical infrastructure.