NVD disclosure day

Published threat advisories for May 8, 2026

CVE advisoryCRITICAL

CVE-2026-42454

Termix could allow internal attacker to take control of managed servers.

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

By injecting unauthorized commands through Termix, an internal attacker can install backdoors to gain full administrative access to your managed servers. This flaw poses a significant risk to the integrity of your entire production infrastructure.

CVE advisoryCRITICAL

CVE-2026-42302

FastGPT could allow an external attacker to take full control of the system

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A security flaw in the FastGPT agent-sandbox allows an external attacker to bypass access controls and gain full control of the environment. This lets them run unauthorized commands, creating a risk that sensitive AI data or system secrets could be stolen.

CVE advisoryCRITICAL

CVE-2026-8178

Amazon Redshift database driver could allow internal attacker to run unauthorized code

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

An internal attacker can exploit a flaw in the Amazon Redshift JDBC Driver to execute unauthorized code on the host system. This could enable them to compromise the application, steal sensitive database credentials, and access protected information.

CVE advisoryCRITICAL

CVE-2026-43465

Linux Kernel could allow external attacker to cause a system outage

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

An internal attacker with administrative access to a system running the Linux kernel mlx5e driver can exploit a memory handling error by sending crafted network traffic while running custom programs. This can trigger a system crash, causing a denial of service that disrupts network availability and system stability.

CVE advisoryCRITICAL

CVE-2026-43407

Linux kernel Ceph component could allow an internal attacker to cause a system crash

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

An internal attacker with network access to the Ceph storage cluster could trigger a system crash and disrupt business operations. This vulnerability also risks exposing sensitive information from system memory, threatening both data privacy and overall service reliability.

CVE advisoryCRITICAL

CVE-2026-43406

Linux kernel Ceph storage could allow internal attacker to leak data or crash the system

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A security flaw in Linux kernel Ceph storage allows an internal attacker to send malicious data to trigger system crashes or access sensitive memory. This exposes the business to potential storage outages and the compromise of privileged system information.

CVE advisoryCRITICAL

CVE-2026-43402

Linux kernel could allow internal attacker to crash the system

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

The Linux kernel has a security flaw that allows an internal attacker with local system access to manipulate memory, potentially resulting in unauthorized elevated privileges or system crashes. This creates a risk of operational disruption and compromised data security.

CVE advisoryCRITICAL

CVE-2026-43384

Linux Kernel could allow external attacker to bypass network authentication

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

An external attacker can exploit a flaw in the Linux kernel by analyzing system response times to guess secret authentication codes. This allows them to impersonate trusted network devices to intercept or inject sensitive data, potentially compromising the integrity of critical communications.

CVE advisoryCRITICAL

CVE-2026-43383

Linux kernel allows attackers to take control of services and customer data

Halo Surface Signal: 3 out of 5 — possibly public-facing.

An external attacker can exploit a flaw in the Linux kernel to guess secret network authentication keys by analyzing connection timing. This could allow them to impersonate trusted network devices, enabling unauthorized interception of sensitive data or the injection of malicious network traffic.

CVE advisoryCRITICAL

CVE-2026-43379

Linux file sharing service could allow an external attacker to crash system services

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

An external attacker can exploit a vulnerability in the Linux kernel file-sharing service to crash the system or gain unauthorized control over the server. This threatens business operations by potentially causing service outages or allowing an attacker to compromise critical system access.

CVE advisoryCRITICAL

CVE-2026-37431

Beauty Parlour Management System lets attackers steal sensitive customer data.

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A critical flaw in the Beauty Parlour Management System allows attackers to steal sensitive customer data remotely by accessing appointment details. This is a serious concern as it exposes private information and can be exploited without any special access.

CVE advisoryCRITICAL

CVE-2026-44336

PraisonAI can be tricked into running any code on your systems, potentially exposing sensitive files and admin control.

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A critical flaw in PraisonAI allows unauthorized users to write files anywhere on your system, potentially leading to code execution and access to sensitive data. Upgrade PraisonAI to version 4.6.34 or newer immediately.

CVE advisoryCRITICAL

CVE-2026-44128

SEPPmail Secure Email Gateway allows attackers to take control of your systems remotely.

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

A critical flaw in SEPPmail Secure Email Gateway lets attackers remotely execute code on your systems by tricking the GINA UI, potentially exposing sensitive data. This demands immediate attention due to its internet-facing nature.

CVE advisoryCRITICAL

CVE-2026-44125

Attackers can access sensitive functions on SEPPmail gateways without a login

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

Unauthenticated attackers can access sensitive functions on SEPPmail Secure Email Gateway, a system protecting email communications, because of a flaw in its new interface. This advisory warrants attention now as the gateway is often internet-facing.

CVE advisoryCRITICAL

CVE-2026-41497

PraisonAI allows attackers to run any command, potentially stealing data or disrupting services.

Halo Surface Signal: 3 out of 5 — possibly public-facing.

PraisonAI versions before 4.6.9 have a critical flaw letting attackers run any command, potentially stealing data or disrupting services by exploiting its command handling. This needs immediate attention as it affects internet-facing systems.

CVE advisoryCRITICAL

CVE-2026-25199

Apache CloudStack could allow internal attacker to control other tenants' virtual machines.

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

An internal attacker with legitimate access to Apache CloudStack can hijack other tenants' virtual machines. This could allow them to stop, start, or destroy those machines, resulting in service disruption and potential compromise of sensitive cloud resources.

CVE advisoryCRITICAL

CVE-2026-8153

Universal Robots PolyScope could allow internal attacker to take control of the robot

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

An issue in Universal Robots PolyScope allows an internal attacker to run unauthorized commands on the robot’s operating system. This could provide full control over the robot, potentially causing significant disruptions to manufacturing processes.

CVE advisoryCRITICAL

CVE-2026-8076

CashDro 3 systems can be easily broken into, exposing confidential settings.

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

An external attacker can exploit weak PIN-based authentication on the CashDro 3 web panel to gain unauthorized administrative access by guessing login codes. This allows them to modify sensitive financial settings or alter the device's operational controls, potentially compromising system security.

CVE advisoryCRITICAL

CVE-2025-69691

Netgate pfSense CE could allow internal attacker to gain full system control

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

An internal attacker with valid administrative credentials could exploit the Netgate pfSense CE firewall to run unauthorized commands, potentially leading to full system control. This exposes the business to significant risk, as it could allow unauthorized manipulation of network traffic and compromise the security pe…

CVE advisoryCRITICAL

CVE-2025-69690

Netgate pfSense CE could allow an internal attacker to gain full system control.

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

An internal attacker with administrative access to Netgate pfSense CE can run unauthorized commands to take full control of the system. This allows them to modify critical security rules and intercept internal network traffic, potentially leading to long-term compromise of your network infrastructure.

CVE advisoryCRITICAL

CVE-2025-69599

RayVentory Scan Engine could allow an internal attacker to gain administrative privileges

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

An internal attacker with limited access to the RayVentory Scan Engine can manipulate system settings to run unauthorized programs. This could grant them full administrative control over the host, potentially leading to a complete system compromise.

CVE advisoryCRITICAL

CVE-2024-51092

LibreNMS could allow internal attacker to take over the system

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

An internal attacker with administrative access to LibreNMS can execute unauthorized commands to take full control of the monitoring server. This enables them to access sensitive network information or potentially compromise other critical business systems.

CVE advisoryCRITICAL

CVE-2026-43944

Electerm could allow internal attacker to take control of user devices

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

An internal attacker can trick Electerm users into clicking malicious links or shortcuts to gain full control over their devices. This risk is significant because it can lead to the theft of sensitive login credentials and unauthorized access to remote servers managed by the software.

CVE advisoryCRITICAL

CVE-2026-43941

Electerm could allow external attacker to run programs or access files via malicious links.

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

An external attacker can exploit the Electerm terminal client by enticing users to click malicious links. This allows the attacker to run unauthorized programs or access private local files, potentially resulting in full control of the victim's machine and their management session.

CVE advisoryCRITICAL

CVE-2026-41501

Electerm could allow an external attacker to delete sensitive files.

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

An external attacker could exploit a vulnerability in Electerm’s update process to execute unauthorized commands on the host machine. This could allow them to steal session credentials, delete files, and potentially take complete control of the system.

CVE advisoryCRITICAL

CVE-2026-41500

Electerm could allow an internal attacker to run malicious commands on a user's machine

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

Electerm contains a flaw that could allow an internal attacker to execute unauthorized commands on a user's machine. This issue puts stored credentials and sensitive network infrastructure at risk of exposure, potentially leading to full system compromise.