U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Oracle PeopleSoft Enterprise PeopleTools flaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added Oracle PeopleSoft Enterprise PeopleTools flaw, tracked as CVE-2026-35273 (CVSS score of 9.8), to its Known Exploited Vulnerabilities (KEV) catalog. Oracle PeopleSoft Enterprise PeopleTools is the underlying technology platform […]
A vulnerability was found in DTStack Taier up to 1.4.0. It has been declared as critical. The affected element is the function preHandle of the file taier-data-develop/src/main/java/com/dtstack/taier/develop/interceptor/LoginInterceptor.java of the component Source Connection Test Endpoint. Executing a manipulation can lead to improper authentication.
This vulnerability appears as CVE-2026-11618. The attack may be performed from remote. In addition, an exploit is available.
A patch should be applied to remediate this issue.
A vulnerability was found in Dolibarr ERP CRM up to 23.0.2. It has been rated as critical. The impacted element is an unknown function of the file htdocs/core/filemanagerdol/connectors/php/config.inc.php of the component Legacy Filemanager. The manipulation leads to improper authorization.
This vulnerability is traded as CVE-2026-11619. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
Upgrading the affected component is advised.
A vulnerability categorized as critical has been discovered in TOTOLINK EX200 4.0.3c.7646. This affects an unknown function of the file /etc/vsftpd.conf of the component vsftpd. The manipulation results in least privilege violation.
This vulnerability is known as CVE-2026-11620. It is possible to launch the attack remotely. Furthermore, an exploit is available.
A vulnerability was found in Google Chrome on Linux and classified as critical. The impacted element is an unknown function of the component Ozone. Executing a manipulation can lead to use after free.
This vulnerability is registered as CVE-2026-11681. It is possible to launch the attack remotely. No exploit is available.
It is suggested to upgrade the affected component.
A vulnerability categorized as critical has been discovered in Google Chrome on Linux. Affected by this vulnerability is an unknown functionality of the component Views. Such manipulation leads to sandbox issue.
This vulnerability is traded as CVE-2026-11682. The attack may be launched remotely. There is no exploit available.
It is advisable to upgrade the affected component.
A vulnerability classified as critical was found in Google Chrome. The affected element is an unknown function of the component Passwords. Such manipulation leads to improper isolation or compartmentalization.
This vulnerability is referenced as CVE-2026-11689. It is possible to launch the attack remotely. No exploit is available.
Upgrading the affected component is advised.
A vulnerability categorized as problematic has been discovered in Google Chrome on Windows. Affected by this issue is some unknown functionality of the component Video. Executing a manipulation can lead to use of uninitialized variable.
This vulnerability is registered as CVE-2026-11696. It is possible to launch the attack remotely. No exploit is available.
It is advisable to upgrade the affected component.
A vulnerability identified as critical has been detected in Google Chrome. This affects an unknown part of the component UI. The manipulation leads to sandbox issue.
This vulnerability is documented as CVE-2026-11697. The attack can be initiated remotely. There is not any exploit available.
You should upgrade the affected component.
A vulnerability classified as problematic has been found in Google Chrome. The affected element is an unknown function of the component Guest View. Performing a manipulation results in clickjacking.
This vulnerability is known as CVE-2026-11701. Remote exploitation of the attack is possible. No exploit is available.
It is recommended to upgrade the affected component.
A vulnerability was found in Microsoft Windows up to Server 2022. It has been declared as problematic. This impacts an unknown function of the component Defender Credential Guard. Executing a manipulation can lead to information disclosure.
This vulnerability appears as CVE-2022-34704. The attack may be performed from remote. There is no available exploit.
It is best practice to apply a patch to resolve this issue.
A vulnerability, which was classified as problematic, was found in NVIDIA GPU Display Driver on Linux. Affected by this issue is some unknown functionality in the library nvidia.ko of the component Kernel Mode Layer. The manipulation results in out-of-bounds read.
This vulnerability is identified as CVE-2022-34684. The attack can be executed remotely. There is not any exploit available.