NVD disclosure day

Published threat advisories for May 26, 2026

CVE advisoryKnown Exploit

CVE-2026-48710

Starlette Host Header Validation Bypass Vulnerability

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

A vulnerability in the Starlette web framework allows attackers to bypass security measures by sending malformed HTTP `Host` headers. This could lead to the improper reconstruction of request URLs, potentially enabling unauthorized access if security relies on these reconstructed paths. Readers should care because this

• CISA KEV

CVE advisoryCRITICAL

CVE-2026-44895

GitLab MCP Server Unauthenticated RPC Endpoint Exposes Sensitive Access

Halo Surface Signal: 3 out of 5 — possibly public-facing.

GitLab's MCP Server has a critical vulnerability where its AI agent communication interface lacks authentication and allows unrestricted cross-origin access. This flaw exposes a sensitive RPC endpoint, potentially allowing unauthenticated users to perform unauthorized actions using the operator's GitLab personal access

CVE advisoryCRITICAL

CVE-2026-44451

Lumiverse Component Override Sandbox Escape Vulnerability

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A critical vulnerability exists in Lumiverse's component override system, allowing attackers to execute code in a user's authenticated session via malicious theme packs. This occurs when a user imports a crafted theme file and enables a component override, enabling an escape from the sandbox to access the browser envir

CVE advisoryCRITICAL

CVE-2026-44450

Lumiverse MCP Server Code Execution Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A vulnerability in Lumiverse's MCP server creation endpoint allows logged-in users to execute arbitrary OS-level commands by exploiting unvalidated arguments forwarded to child processes. This could impact server data and functionality if the application is externally reachable.

CVE advisoryCRITICAL

CVE-2026-44449

Lumiverse Arbitrary Command Execution via Path Validation Flaw

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

An arbitrary command execution vulnerability exists in the Lumiverse AI chat application due to improper handling of file path inputs. An authenticated attacker could exploit this by crafting a malicious path, leading to unauthorized command execution on the server. This could impact system integrity and confidentialit

CVE advisoryCRITICAL

CVE-2026-44444

Lumiverse Spindle Extension Host Code Execution Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A critical vulnerability in Lumiverse's Spindle extension build pipeline allows for host-level code execution if a malicious extension is installed by an administrator before safety scans complete. This could lead to system compromise. The issue is fixed in version 0.9.7.

CVE advisoryCRITICAL

CVE-2026-48689

FastNetMon Community Edition Heap Overflow Vulnerability

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

FastNetMon Community Edition has a heap-based buffer overflow vulnerability in its dynamic binary buffer class, exploitable by sending crafted network traffic such as NetFlow or BGP. This could allow an attacker to execute arbitrary code by corrupting heap metadata. Its design makes it reachable via network traffic pro

CVE advisoryCRITICAL

CVE-2026-3660

IBM Engineering Lifecycle Management Unauthorized Access Vulnerability.

Halo Surface Signal: 3 out of 5 — possibly public-facing.

An unauthenticated remote attacker could update server property files in IBM Engineering Lifecycle Management, potentially leading to unauthorized application access. This vulnerability, classified as critical, affects network-accessible systems and could compromise the integrity and availability of the application and

CVE advisoryCRITICAL

CVE-2026-8633

IBM WebSphere Remote Code Execution via Web Server Plug-ins

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

IBM Web Server Plug-ins for WebSphere Application Server and Liberty contain a critical vulnerability allowing unauthenticated remote code execution via specially crafted network requests. This could lead to system compromise. Confirming the use of this technology is important.

CVE advisoryCRITICAL

CVE-2026-7251

Eppendorf BioFlo 320 VNC Hard-Coded Password Vulnerability

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

The Eppendorf BioFlo 320 has a vulnerability where its VNC server uses a hard-coded password, allowing remote attackers to gain full control of its user interface if the device is network reachable with remote access enabled. Readers should care because this could lead to unauthorized access and control of critical lab

CVE advisoryCRITICAL

CVE-2026-47202

Kavita Improper Token Validation Allows Remote User Impersonation.

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

An Improper Token Validation vulnerability in the Kavita reading server allows unauthenticated remote attackers to request a security token for any user, including administrators, by knowing their username. This could lead to unauthorized access to user and system data.

CVE advisoryCRITICAL

CVE-2026-46624

Twenty CRM SQL Injection and OS Command Execution Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A critical remote code execution vulnerability exists in Twenty CRM, allowing authenticated users to run arbitrary OS commands on the database server. The issue stems from unsanitized input in the REST API's `groupBy` endpoint, which can be exploited if the PostgreSQL user has superuser privileges. This could affect ex

CVE advisoryCRITICAL

CVE-2026-44668

Faction Unauthenticated Template Management Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

An unauthenticated attacker can exploit a vulnerability in a penetration testing report generation framework to read, modify, or delete any system template. This issue arises from improper session validation before executing critical functions, potentially impacting system integrity and data availability when the appli

CVE advisoryCRITICAL

CVE-2026-48691

FastNetMon Community Edition BGP AS Path Integer Overflow

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A critical integer overflow vulnerability exists in FastNetMon Community Edition's BGP AS_PATH encoder, which can lead to a heap buffer overflow if an attacker sends specially crafted BGP traffic. This could potentially disrupt services or compromise system integrity. Readers should care because FastNetMon is used for

CVE advisoryCRITICAL

CVE-2026-45721

Algernon Directory Traversal Leading to Remote Code Execution

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A vulnerability in the Algernon web server allows unauthenticated remote code execution. When Algernon searches for a handler file in directories above the server root, it may execute a malicious script, potentially exposing sensitive system functions and data. This issue is reachable via HTTP requests to any exposed A

CVE advisoryCRITICAL

CVE-2026-44723

Vowpal Wabbit Workflow Command Injection

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A command injection vulnerability exists in Vowpal Wabbit's workflow automation that could allow attackers to execute arbitrary commands on the system runner. This occurs when user-provided data from pull request titles is improperly handled in bash scripts, enabling command breakout before a test script is invoked. Un

CVE advisoryCRITICAL

CVE-2026-2264

Google Cloud Apigee SSRF via Insecure Request Policy

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A vulnerability exists in Google Cloud Apigee's SetIntegrationRequest policy that could allow remote attackers to perform Server-Side Request Forgery and steal service account access tokens if an API proxy is insecurely configured. This impacts an API management platform, potentially exposing sensitive credentials.

CVE advisoryCRITICAL

CVE-2026-24212

NVIDIA Isaac Launchable Clear Text Transmission Vulnerability

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

NVIDIA Isaac Launchable for Linux has a vulnerability that transmits sensitive information in clear text, which could enable code execution, privilege escalation, and data tampering if reachable. This is a concern for systems handling sensitive data.

CVE advisoryCRITICAL

CVE-2025-36220

IBM Cloud Pak for Data System Cyclops SQL Injection Vulnerability

Halo Surface Signal: 3 out of 5 — possibly public-facing.

IBM Cloud Pak for Data System is vulnerable to SQL injection, potentially allowing remote attackers to view, add, modify, or delete backend database information. While the vulnerability is critical, its relevance depends on whether the typically internally deployed platform is network-reachable.

CVE advisoryCRITICAL

CVE-2026-48687

FastNetMon Juniper Plugin OS Command Injection

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

An OS command injection vulnerability exists in the Juniper router integration plugin for FastNetMon, where unsanitized input within a logging function can allow arbitrary command execution. This could lead to unauthorized system access or control if the plugin is reachable and invoked with malicious arguments. You sho

CVE advisoryCRITICAL

CVE-2026-48686

FastNetMon BGP NLRI Stack Overflow Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

FastNetMon Community Edition has a critical vulnerability in its BGP decoder that could allow arbitrary code execution. The flaw involves a stack-based buffer overflow due to unvalidated prefix length in BGP packets. Because FastNetMon processes external network data, this issue warrants attention to assess its relevan

CVE advisoryCRITICAL

CVE-2026-4480

Samba 'print command' Remote Code Execution Vulnerability

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A flaw in the Samba printing subsystem allows a remote attacker to execute code by sending a crafted print job. This occurs because the system does not properly escape shell meta-characters in the job description passed to the print command. This could lead to remote code execution on affected systems.

CVE advisoryKnown Exploit

CVE-2026-45247

Mirasvit Cache Warmer PHP Object Injection Remote Code Execution.

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

A PHP object injection vulnerability exists in Mirasvit Full Page Cache Warmer for Magento 2, allowing unauthenticated attackers to execute arbitrary code remotely by sending a crafted serialized PHP object in a cookie. This exploit leverages unrestricted calls to PHP's `unserialize()` function, potentially leading to

• CISA KEV

CVE advisoryCRITICAL

CVE-2026-7374

KubeVirt virt-handler Symlink Validation Flaw Allows Node and Cluster Compromise.

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in KubeVirt's virt-handler component allows an authenticated user with edit permissions to hijack privileged connections by exploiting improper symlink validation. This could lead to full control of the host node and the entire cluster.

CVE advisoryCRITICAL

CVE-2026-42496

Archive Tar Symlink Target Vulnerability.

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A vulnerability in Archive::Tar for Perl allows crafted archives with symbolic links to target arbitrary file paths outside the extraction directory, potentially enabling unauthorized file access or modification. This issue requires confirmation of usage and exposure within affected applications to assess its relevance

CVE advisoryCRITICAL

CVE-2026-8376

Perl 32-bit Heap Buffer Overflow During Regex Compilation.

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A critical heap buffer overflow vulnerability exists in Perl versions through 5.43.10 on 32-bit builds, triggered during the compilation of specific regular expressions. This could allow an attacker to cause a program to crash or behave unexpectedly if they can supply specially crafted input to a vulnerable Perl interp