NVD disclosure day

Published threat advisories for September 10, 2026

CVE advisoryCRITICAL

CVE-2026-82107

IBM DataStage Authentication Bypass Information Disclosure

Halo Surface Signal: 3 out of 5 — possibly public-facing.

IBM DataStage on Cloud Pak for Data has an improper authentication vulnerability that could allow an authenticated attacker to access sensitive information and bypass security restrictions. This means an attacker with valid credentials might be able to view or modify data they are not supposed to. Security leaders shou

CVE advisoryCRITICAL

CVE-2026-82100

IBM DataStage Path Traversal Denial of Service

Halo Surface Signal: 3 out of 5 — possibly public-facing.

IBM DataStage on Cloud Pak for Data has a path traversal vulnerability that a remote authenticated attacker could exploit to cause a denial of service. This flaw could allow manipulation of file paths to access unintended system areas, potentially impacting availability or integrity. Organizations should assess if thei

CVE advisoryCRITICAL

CVE-2026-80424

IBM DataStage Path Traversal Archive Extraction Vulnerability

Halo Surface Signal: 3 out of 5 — possibly public-facing.

A path traversal vulnerability in IBM DataStage on Cloud Pak for Data allows authenticated attackers to create arbitrary files by manipulating archive extractions. This could impact system integrity and data confidentiality. Readers should care due to the potential for unauthorized file creation on the system, which mi

CVE advisoryCRITICAL

CVE-2026-78573

IBM ContextForge MCP Gateway Default Credentials Vulnerability

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

IBM ContextForge MCP Gateway is affected by a vulnerability related to the use of default credentials. If reachable, this could enable a remote attacker to gain administrative access, potentially compromising system control. This warrants attention for administrators managing gateway services.

CVE advisoryCRITICAL

CVE-2026-45764

Suricata HTTP/2 Protocol Handling Denial of Service

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A type confusion vulnerability in Suricata can cause it to crash when processing crafted HTTP/2 traffic, leading to a denial of service. This issue affects Suricata instances configured to parse HTTP/2 traffic and could disrupt network security monitoring and intrusion prevention.

CVE advisoryCRITICAL

CVE-2026-19646

IBM Common Licensing Agent HTTP Host Header Vulnerability

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A vulnerability in IBM Common Licensing Agent allows a remote attacker to redirect users to an arbitrary domain by manipulating the HTTP Host header. This could lead to users visiting malicious websites. The affected technology is typically used internally, so relevance depends on external exposure.

CVE advisoryCRITICAL

CVE-2026-85025

IBM Langflow OSS Code Execution Vulnerability

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

An unauthenticated attacker could exploit a vulnerability in IBM Langflow OSS's publicly shared project endpoints to execute arbitrary code and access or modify chat sessions. This occurs due to insufficient security enforcement and session isolation, potentially allowing external compromise of these shared resources.

CVE advisoryCRITICAL

CVE-2026-75940

Lenovo Health Android Application Sensitive Data Exposure

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in the Lenovo Health Android Application, distributed only in the Chinese market, may allow unauthorized access to sensitive health information. The primary concern is to determine if this application is used and its relevance to operations. Uncertainty exists regarding exploitation, affected data, busi

CVE advisoryCRITICAL

CVE-2026-89086

OCaml JOSE RSA Signature Validation Flaw

Halo Surface Signal: 3 out of 5 — possibly public-facing.

The OCaml jose library has a critical vulnerability where RSA signature validation is incomplete, potentially allowing forged signatures to be accepted. This could impact systems using this library for JOSE/JWT processing if it's reachable, possibly leading to unauthorized access or data manipulation. The relevance and

CVE advisoryCRITICAL

CVE-2026-88062

OmniRoute Arbitrary Code Execution Vulnerability

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

An arbitrary code execution vulnerability exists in OmniRoute, an AI gateway. This flaw allows unauthenticated remote attackers to execute arbitrary code on the server if the service is externally reachable and accessible anonymously or during a bootstrap window. This poses a risk to system integrity.

CVE advisoryCRITICAL

CVE-2026-89043

passport-saml-encrypted XML Signature Wrapping Vulnerability

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

A critical vulnerability exists in the passport-saml-encrypted library, allowing attackers to prepend a forged assertion to a validly signed SAML message, leading to identity impersonation. This occurs because signature verification and assertion extraction use independent lookups without cross-validation. You should c

CVE advisoryCRITICAL

CVE-2026-89042

passport-saml-encrypted Authentication Bypass via Missing Signature Verification

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

A vulnerability in a SAML authentication library allows attackers to bypass authentication by submitting unsigned SAML responses, potentially granting unauthorized access to authenticated user profiles. This bypass occurs because signature verification is conditional, enabling the submission of forged assertions. The i

CVE advisoryCRITICAL

CVE-2026-88044

Rclone FTP and S3 Authentication Bypass Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A vulnerability in rclone affects network-facing servers for cloud storage synchronization. In specific configurations, an attacker could bypass authentication for FTP and S3 services, potentially leading to unauthorized access to files. This issue is relevant if rclone servers are exposed and utilize per-server proxy

CVE advisoryCRITICAL

CVE-2026-65639

ConfigServer Security & Firewall Arbitrary Command Execution via Rule Parsing

Halo Surface Signal: 3 out of 5 — possibly public-facing.

A critical OS command injection vulnerability exists in the advanced-rule parser of ConfigServer Security & Firewall, allowing a remote attacker who controls an allow/deny feed to execute arbitrary commands as root. This impacts systems using the software distributed by ConfigServer or its WebPros-maintained fork, with

CVE advisoryCRITICAL

CVE-2026-65638

ConfigServer Security & Firewall Command Injection Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A critical command injection vulnerability exists in ConfigServer Security & Firewall. This flaw allows unauthenticated remote attackers to execute arbitrary commands on affected systems via a malicious request URL. Attackers can leverage this to compromise system integrity and potentially impact service availability.

CVE advisoryCRITICAL

CVE-2026-88899

Knowns Directory Traversal Via X-Opencode-Directory Header

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A critical vulnerability exists in the `/api/opencode` proxy endpoint where improper header validation allows remote attackers to execute file operations outside the project root on the host system. This issue is relevant if external systems interact with this API and matters for host file system access.

CVE advisoryCRITICAL

CVE-2026-81467

Dell ThinOS OS Command Injection Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

Dell ThinOS contains an OS command injection vulnerability that could allow an unauthenticated remote attacker to execute commands on affected systems. This could lead to unauthorized access or manipulation of the system. Readers should confirm if this technology is in use and assess potential exposure.

CVE advisoryCRITICAL

CVE-2026-88007

Traefik HTTP/3 ConnContext authentication bypass vulnerability.

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

A critical vulnerability exists in Traefik when using HTTP/3 with specific authentication and keep-alive configurations. If reachable, an unrelated client could reuse an authenticated backend connection to impersonate a victim and access their data without credentials. This is relevant for internet-facing deployments.

CVE advisoryCRITICAL

CVE-2026-81800

Verified Reviews SQL Injection Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

An unauthenticated SQL injection vulnerability exists in the Verified Reviews plugin. Attackers could exploit this flaw over the network to access or alter sensitive database information. This issue is relevant to organizations using the plugin, as it could lead to unauthorized data exposure.

CVE advisoryCRITICAL

CVE-2026-88887

Renovate Credential Leakage Via Malicious Container Registry Link Header

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

Renovate, a tool for automating dependency updates, has a vulnerability that could allow a malicious container registry to steal credentials. If Renovate interacts with such a registry, a crafted response can redirect its requests to an attacker-controlled host, exfiltrating the registry credentials. This impacts organ

CVE advisoryCRITICAL

CVE-2026-88882

Renovate NuGet Credential Exfiltration via Malicious Link Header

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

Renovate, a tool for automating software dependency updates, can be tricked into sending sensitive registry credentials to unintended servers when processing NuGet package version information from a malicious or compromised registry. This vulnerability exposes credentials to an additional, attacker-controlled host, and

CVE advisoryCRITICAL

CVE-2026-88881

Renovate Credential Disclosure via Malicious GitHub Pagination Links

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

Renovate, a dependency update tool, can be tricked by a compromised GitHub server into sending its configured credentials to an attacker-controlled host. This happens when Renovate follows unvalidated pagination links provided by the server, potentially exposing sensitive information. This issue requires that the GitHu

CVE advisoryCRITICAL

CVE-2026-88880

Renovate Credential Exfiltration Via Link Header Redirection

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

Renovate, a dependency automation tool, has a vulnerability where it fails to validate Link header destinations when following GitLab server pagination. This could allow a malicious server to redirect requests containing authentication credentials, leading to potential exfiltration. Understanding if your organization u

CVE advisoryCRITICAL

CVE-2026-88877

Traefik Kubernetes Ingress Authentication Bypass Vulnerability

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

Traefik, a reverse proxy, has a vulnerability in its Kubernetes ingress-nginx provider that can bypass authentication and IP allowlisting. Specially crafted HTTP requests can exploit this by misdirecting traffic, leading to unauthorized access to backend services. This issue is critical for any environment using Traefi

CVE advisoryCRITICAL

CVE-2026-88869

AVideo AD_Server Plugin Stored Cross-Site Scripting Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

AVideo's AD_Server plugin has a stored cross-site scripting vulnerability. Unauthenticated attackers can inject malicious code through a specific parameter, which can execute JavaScript in an administrator's browser. This could potentially lead to unauthorized actions or information disclosure within the administrative

CVE advisoryCRITICAL

CVE-2026-88868

AVideo LiveLinks Plugin Stored Cross-Site Scripting Vulnerability.

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

The AVideo platform's LiveLinks plugin has a stored cross-site scripting vulnerability. A user with streaming permissions can inject scripts into the title or description fields, which will execute in the browsers of all visitors viewing the live-link page, including administrators. This could impact site content and v

CVE advisoryCRITICAL

CVE-2026-88867

WWBN AVideo Stored Cross-Site Scripting via Category Functionality

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

WWBN AVideo has a stored cross-site scripting vulnerability where category names or icons can contain malicious JavaScript. If an authenticated user creates a category with this payload, it will execute in the browser of any visitor, including administrators, who views content associated with that category, potentially

CVE advisoryCRITICAL

CVE-2026-88866

WWBN AVideo LoginControl Stored Cross-Site Scripting Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A stored cross-site scripting vulnerability in WWBN AVideo's LoginControl plugin allows an attacker with any login account to inject malicious scripts via the User-Agent header. These scripts can execute in administrator browsers when viewing login history, potentially compromising administrator sessions. This issue is

CVE advisoryCRITICAL

CVE-2026-88860

Capgo Stale Channel Permissions Authorization Bypass.

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

Capgo may retain stale channel permission overrides when a user's last role binding is deleted, potentially allowing unauthorized users to alter production update versions. This issue, affecting the Capgo platform used for managing application updates, could enable attackers to perform actions beyond their revoked acce

CVE advisoryCRITICAL

CVE-2026-9163

GisLab SQL Injection Vulnerability

Halo Surface Signal: 3 out of 5 — possibly public-facing.

A critical SQL injection vulnerability in the GisLab Laboratory Management System allows unauthenticated network access to manipulate database queries. This could lead to unauthorized access, modification, or deletion of sensitive laboratory data. Confirmation of system usage and its network exposure is necessary to un

CVE advisoryCRITICAL

CVE-2026-78082

Joomla SP Property Unauthenticated SQL Injection Affecting Property Search and Filters.

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

An unauthenticated SQL injection vulnerability exists in a Joomla extension for property search and filtering. This flaw allows remote attackers to execute arbitrary SQL commands, potentially leading to the theft of sensitive database information through the public-facing search and filter features. Organizations using

CVE advisoryCRITICAL

CVE-2026-8323

Armiya Access Control System Open Redirect Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A critical vulnerability exists in Armiya Information Technologies Ltd. Co. Access Control System that could allow an attacker to redirect users to untrusted sites, potentially faking the source of data. This could mislead users into interacting with malicious websites, impacting system data and user trust.

CVE advisoryCRITICAL

CVE-2026-88285

GeoVision GV-LPC2211 PTZ Control Service Allows Unauthenticated Remote Commands

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

GeoVision cameras have a PTZ control service that can be accessed remotely without authentication. This allows unauthenticated users to retrieve camera information and issue commands for PTZ movement or raw serial data. This vulnerability is relevant if these cameras are in use and exposed to a network.

CVE advisoryCRITICAL

CVE-2026-88278

GeoVision GV-LPC2211 UsernameToken Replay Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

GeoVision GV-LPC2211 devices fail to properly protect authentication tokens, allowing attackers to replay captured credentials for unauthorized ONVIF operations. This critical network vulnerability could enable unauthorized access and control of the affected surveillance equipment.

CVE advisoryCRITICAL

CVE-2026-59679

libXfont2 Font Server Out-of-Bounds Read Write

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability in the libXfont2 font-server client allows a compromised font server to perform out-of-bounds heap reads and writes by manipulating font reply data, potentially leading to system compromise. This issue requires a malicious or compromised font server to be reachable and relevant to an environment to be e

CVE advisoryCRITICAL

CVE-2026-44950

libXfont2 Heap Buffer Overflow in Font Server Client

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A heap buffer overflow vulnerability exists in the libXfont2 font-server client, where it improperly validates the destination buffer size when copying glyph bitmaps. A malicious font server could exploit this by sending crafted font data to cause memory corruption, potentially leading to unpredictable behavior or code

CVE advisoryCRITICAL

CVE-2026-13745

Gemini CLI Arbitrary Code Execution via .env Override

Halo Surface Signal: 1 out of 5 — much less likely to be public-facing.

A vulnerability exists in the Gemini CLI and its GitHub Action, allowing an unprivileged attacker to execute arbitrary code by overriding the GEMINI_CLI_HOME environment variable with untrusted local .env files. This could lead to system compromise and sensitive data exposure if these tools are used in environments pro

CVE advisoryCRITICAL

CVE-2026-80352

Apache Camel K YAML Injection Allows Arbitrary Kubernetes Object Creation

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A code injection vulnerability in Apache Camel K allows an authorized user to inject arbitrary Kubernetes objects through custom resource configurations, potentially enabling unauthorized resource creation with the operator's privileges.

CVE advisoryCRITICAL

CVE-2026-80351

Apache Camel K Eval Injection Allows Arbitrary Code Execution

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A vulnerability in Apache Camel K may allow unauthorized code execution within the operator pod by influencing Maven configuration with tenant-controlled content, potentially granting arbitrary code privileges. This could impact the security and integrity of systems using this integration management software. Readers s

CVE advisoryCRITICAL

CVE-2026-7188

Armiya Access Control System SQL Injection

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A SQL injection vulnerability exists in Armiya Access Control Systems, potentially allowing unauthenticated attackers to execute arbitrary SQL commands. This could lead to unauthorized access, modification, or deletion of sensitive data. Confirming the presence and network exposure of this technology is crucial.

CVE advisoryCRITICAL

CVE-2026-78361

WordPress ZipMoney Plugin Unauthenticated Option Deletion Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A vulnerability in a WordPress e-commerce plugin allows unauthenticated users to delete arbitrary site options. This could lead to the deactivation of essential site configurations, plugin functionality, and potentially take the entire site offline. It is important to identify instances of the affected plugin and asses

CVE advisoryCRITICAL

CVE-2026-77770

WordPress miniOrange 2FA Plugin Allows Unauthenticated Deletion of Site Options

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

The miniOrange 2FA WordPress plugin has a vulnerability that permits unauthenticated users to delete site options, which could lock administrators out of their dashboards or deactivate the plugin. This issue is reachable via unauthenticated network requests and may affect the availability of WordPress sites. It is unce

CVE advisoryCRITICAL

CVE-2026-84939

Apache FreeMarker Path Traversal via Malformed Locale

Halo Surface Signal: 3 out of 5 — possibly public-facing.

A path traversal vulnerability exists in Apache FreeMarker's template loading when localized lookup is enabled, allowing attackers to potentially access or modify files beyond intended scopes by supplying malformed locale identifiers. The actual impact is uncertain and depends on FreeMarker's configuration and the spec

CVE advisoryCRITICAL

CVE-2026-67593

Apache Artemis and ActiveMQ Artemis Remote Queue Deletion Vulnerability

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

A remote attacker can craft a command to delete message queues on Apache Artemis brokers, potentially before authentication, impacting service availability and data integrity. Users should verify if their Artemis systems are exposed and plan for upgrades.

CVE advisoryCRITICAL

CVE-2026-57967

Apache Artemis Session Hijacking Vulnerability.

Halo Surface Signal: 3 out of 5 — possibly public-facing.

An unauthenticated remote attacker can craft a CORE protocol packet to steal an existing session in Apache Artemis and Apache ActiveMQ Artemis, allowing them to assume ongoing execution of previously authenticated sessions. This could impact the integrity and availability of services relying on the message broker.

CVE advisoryCRITICAL

CVE-2026-49364

Apache ActiveMQ Artemis Cluster Credential Capture Vulnerability

Halo Surface Signal: 3 out of 5 — possibly public-facing.

An unauthenticated attacker can capture administrative credentials during initial connections to messaging clusters. This vulnerability affects Apache Artemis and Apache ActiveMQ Artemis, which are used for message brokering. If these systems are reachable and exposed, administrative credentials could be compromised. C

CVE advisoryCRITICAL

CVE-2026-19583

Velociraptor Client Monitoring Artifacts Bypass Permissions

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A vulnerability in Velociraptor allows users to bypass permission checks for sensitive artifacts, potentially enabling arbitrary command execution on endpoints. This occurs when a user can schedule client monitoring artifacts, allowing them to execute restricted commands like Linux.Sys.BashShell without the required pe

CVE advisoryCRITICAL

CVE-2026-18351

Elementor Forms Arbitrary File Upload Vulnerability Allows Remote Code Execution

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

A WordPress plugin for file uploads via forms has a critical vulnerability that allows unauthenticated attackers to upload and execute arbitrary files. This could enable remote code execution on affected websites. The issue stems from insufficient file type validation. The relevance and exposure of this plugin on your