24h | 7d | 30d

Overview

  • The Document Foundation
  • LibreOffice

05 Oct 2026
Published
05 Oct 2026
Updated

CVSS v4.0
MEDIUM (6.8)
EPSS
0.16%

KEV

Description

LibreOffice Calc can link a cell range to an external data source, and the link is saved in the document. Through such a link a document could open an embedded Firebird database that wrote a file to any location the user could write to. In fixed versions an embedded Firebird database can open or create files only inside its own private directory.

Statistics

  • 1 Post

Last activity: 17 hours ago

Fediverse

Profile picture fallback

PoC released for LibreOffice Calc vulnerability CVE-2026-63277, which runs code when a file opens. Five more flaws fixed. Upgrade to 26.2.5.

securityonline.info/libreoffic

  • 0
  • 0
  • 0
  • 17h ago

Overview

  • yt-dlp
  • yt-dlp

02 Jul 2024
Published
02 Aug 2024
Updated

CVSS v3.1
HIGH (7.8)
EPSS
0.32%

KEV

Description

`yt-dlp` and `youtube-dl` are command-line audio/video downloaders. Prior to the fixed versions, `yt-dlp` and `youtube-dl` do not limit the extensions of downloaded files, which could lead to arbitrary filenames being created in the download folder (and path traversal on Windows). Since `yt-dlp` and `youtube-dl` also read config from the working directory (and on Windows executables will be executed from the `yt-dlp` or `youtube-dl` directory), this could lead to arbitrary code being executed. `yt-dlp` version 2024.07.01 fixes this issue by whitelisting the allowed extensions. `youtube-dl` fixes this issue in commit `d42a222` on the `master` branch and in nightly builds tagged 2024-07-03 or later. This might mean some very uncommon extensions might not get downloaded, however it will also limit the possible exploitation surface. In addition to upgrading, have `.%(ext)s` at the end of the output template and make sure the user trusts the websites that they are downloading from. Also, make sure to never download to a directory within PATH or other sensitive locations like one's user directory, `system32`, or other binaries locations. For users who are not able to upgrade, keep the default output template (`-o "%(title)s [%(id)s].%(ext)s`); make sure the extension of the media to download is a common video/audio/sub/... one; try to avoid the generic extractor; and/or use `--ignore-config --config-location ...` to not load config from common locations.

Statistics

  • 1 Post

Last activity: 1 hour ago

Bluesky

Profile picture fallback
How a shortcut-extension exception in yt-dlp's CVE-2024-38519 fix opened the door to CVE-2026-50023, and what the follow-up bug teaches us. #vulnerabilityresearch
  • 0
  • 0
  • 0
  • 1h ago

Overview

  • Apache Software Foundation
  • Apache Thrift
  • thrift

02 Oct 2026
Published
02 Oct 2026
Updated

CVSS
Pending
EPSS
0.38%

KEV

Description

Allocation of resources without limits or throttling, Integer overflow or wraparound, Heap-based buffer overflow vulnerability in Apache Thrift. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.

Statistics

  • 1 Post

Last activity: 19 hours ago

Fediverse

Profile picture fallback

Apache Thrift 0.25.0 fixes 61 Apache Thrift vulnerabilities, including critical heap overflow CVE-2026-91135. Upgrade every binding now.

securityonline.info/apache-thr

  • 0
  • 0
  • 0
  • 19h ago

Overview

  • Atlassian
  • Confluence Server

03 Aug 2021
Published
21 Oct 2025
Updated

CVSS
Pending
EPSS
96.32%

Description

Affected versions of Atlassian Confluence Server allow remote attackers to view restricted resources via a Pre-Authorization Arbitrary File Read vulnerability in the /s/ endpoint. The affected versions are before version 7.4.10, and from version 7.5.0 before 7.12.3.

Statistics

  • 1 Post

Last activity: Last hour

Fediverse

Profile picture fallback

@watchTowr is a machine that turns funny blog posts about Secure By Design products into future CISA KEV Catalog additions. This time it's Atlassian pre-auth arbitrary file read CVE-2026-21589 (9.3 critical). Given that there's a similar "Atlassian Confluence Server Pre-Authorization Arbitrary File Read Vulnerability" (CVE-2021-26085) in CISA's KEV, I'd take patching this seriously before the threat actors find out.

labs.watchtowr.com/you-wont-he

  • 0
  • 0
  • 0
  • Last hour

Overview

  • yt-dlp
  • yt-dlp

23 Jun 2026
Published
25 Jun 2026
Updated

CVSS v3.1
HIGH (8.3)
EPSS
0.66%

KEV

Description

yt-dlp is a command-line audio/video downloader. Prior to 2026.06.09, a vulnerability exists in yt-dlp that allows a remote attacker to write arbitrary OS-shortcut files (such as .desktop, .url, .webloc) to the user's filesystem, bypassing the remediation for CVE-2024-38519. The allowlist explicitly included the unsafe extensions .desktop, .url, and .webloc so that the functionality of the --write-link option (and its variants) could be preserved. These allowlist inclusions can be exploited by an attacker to write malicious OS-shortcut files in the context of a media or subtitles download. This vulnerability is fixed in 2026.06.09.

Statistics

  • 1 Post

Last activity: 1 hour ago

Bluesky

Profile picture fallback
How a shortcut-extension exception in yt-dlp's CVE-2024-38519 fix opened the door to CVE-2026-50023, and what the follow-up bug teaches us. #vulnerabilityresearch
  • 0
  • 0
  • 0
  • 1h ago

Overview

  • Apache Software Foundation
  • Apache Thrift
  • thrift

02 Oct 2026
Published
02 Oct 2026
Updated

CVSS
Pending
EPSS
0.46%

KEV

Description

Heap-based buffer overflow vulnerability in Apache Thrift C++ THeaderTransport. When an application enables the ZLIB transform for the frames it sends, THeaderTransport::transform() copies the compressed frame into the write buffer without making sure it fits. Data that does not compress, such as content a remote peer supplied, grows under compression, so the copy writes past the end of the heap buffer by an amount that grows with the size of the frame, and for large frames it also reads past the end of the transform buffer. This issue affects Apache Thrift: before 0.25.0. Users are recommended to upgrade to version 0.25.0, which fixes the issue.

Statistics

  • 1 Post

Last activity: 19 hours ago

Fediverse

Profile picture fallback

Apache Thrift 0.25.0 fixes 61 Apache Thrift vulnerabilities, including critical heap overflow CVE-2026-91135. Upgrade every binding now.

securityonline.info/apache-thr

  • 0
  • 0
  • 0
  • 19h ago
Showing 61 to 66 of 66 CVEs