VulnSea

Daily digest

Monday 31 August 2026

84 new CVEs this day, in line with the recent average. Of those, 8 critical and 31 high. 8 arrived with exploitation evidence or public exploit code already attached. CISA added 2 CVEs to the Known Exploited Vulnerabilities catalog. Red Hat was the most-affected vendor with 6.

84
New CVEs
8
Critical
2
KEV additions
0
Records changed

Added to CISA KEV

Confirmed exploitation in the wild — federal remediation deadlines attach to these.

New this day, ranked by depth score

The 12 that matter most of the 84 published.

MAL-2026-15603Critical⚠ Exploited
3w ago

Malicious code in pyservercheck (PyPI)

Malicious code in pyservercheck (PyPI)

Abyssalpyservercheck · pyservercheckvia OSV
CVE-2026-82870Critical· 9.6PoC
3w ago

ToolJet before v3.16.208 fails to validate organizationId ownership in database write and destroy routes, allowing any builder-role user to create, alter, or drop tables in other organizations' databases

ToolJet before v3.16.208 fails to validate organizationId ownership in database write and destroy routes, allowing any builder-role user to create, alter, or drop tables in other organizations' databases. Attackers can exploit missing or…

AbyssalToolJet · ToolJetEPSS 0.22%via NVD
CVE-2026-82872Critical· 9.1PoC
3w ago

ToolJet before v3.16.208 fails to validate that the path organizationId matches the authenticated user's workspace before performing ToolJet DB table operations

ToolJet before v3.16.208 fails to validate that the path organizationId matches the authenticated user's workspace before performing ToolJet DB table operations. A workspace admin can create, view, and delete database tables in another w…

AbyssalToolJet · ToolJetEPSS 0.26%via NVD
CVE-2026-82876High· 8.2PoC
3w ago

Phison PS3111-S11 controller firmware verifies RSA signatures using a public modulus embedded within the firmware image itself rather than anchored in immutable storage

Phison PS3111-S11 controller firmware verifies RSA signatures using a public modulus embedded within the firmware image itself rather than anchored in immutable storage. Attackers can generate arbitrary RSA key pairs, sign modified firmw…

MidnightPhison Electronics Corporation · PS3111-S11 Controller FirmwareEPSS 0.09%via NVD
CVE-2026-79748Critical· 9.9
3w ago

MCPHub is a unified hub for centrally managing and dynamically orchestrating multiple MCP servers/APIs into separate endpoints with flexible routing strategies

MCPHub is a unified hub for centrally managing and dynamically orchestrating multiple MCP servers/APIs into separate endpoints with flexible routing strategies. Prior to version 0.12.15, the POST /api/servers and PUT /api/servers/:name e…

MidnightEPSS 0.33%via NVD
CVE-2026-82874Critical· 9.9
3w ago

ToolJet before v3.16.208 fails to validate that authenticated users belong to the organization specified in the organizationId path parameter of tooljet-db endpoints, allowing any Builder user to read, modify, and delete tables across te…

ToolJet before v3.16.208 fails to validate that authenticated users belong to the organization specified in the organizationId path parameter of tooljet-db endpoints, allowing any Builder user to read, modify, and delete tables across te…

MidnightToolJet · ToolJetEPSS 0.25%via NVD
CVE-2026-82871High· 7.7PoC
3w ago

ToolJet before v3.16.208 fails to validate organization membership in database read routes, allowing any authenticated user to access other organizations' table schemas and row data

ToolJet before v3.16.208 fails to validate organization membership in database read routes, allowing any authenticated user to access other organizations' table schemas and row data. Attackers can supply arbitrary organization IDs in URL…

MidnightToolJet · ToolJetEPSS 0.22%via NVD
CVE-2026-82859Critical· 9.8
3w ago

hulumi versions before v1.3.2 contain a deployment SCP template that allows tag-on-create bypasses for hulumi:iac-role protections

hulumi versions before v1.3.2 contain a deployment SCP template that allows tag-on-create bypasses for hulumi:iac-role protections. Attackers can bypass intended IAM boundary restrictions by exploiting the weakened SCP template in downst…

MidnightEPSS 0.30%via NVD
CVE-2026-82854Critical· 9.8
3w ago

Nodemailer before 8.0.4 is vulnerable to SMTP command injection through the unsanitized envelope.size parameter

Nodemailer before 8.0.4 is vulnerable to SMTP command injection through the unsanitized envelope.size parameter. When an application passes a custom envelope object with a size property containing CRLF characters to sendMail(), the value…

MidnightEPSS 1.1%via NVD
CVE-2026-53552Critical· 9.6
3w ago

Goploy is an open-source automation deployment system

Goploy is an open-source automation deployment system. In versions 1.17.5 and prior, Project.AddFile, Project.EditFile, Project.RemoveFile, and Project.Edit in cmd/server/api/project/handler.go accept a project or project-file row id fro…

Midnightzhenorzz · github.com/zhenorzz/goployEPSS 0.20%via NVD
CVE-2026-83596High· 8.8
3w ago

A flaw was found in WebKitGTK

A flaw was found in WebKitGTK. Processing malicious web content can cause memory corruption due to improper memory handling.

TwilightWebKit · webkitEPSS 0.30%via NVD
CVE-2026-82882High· 8.8
3w ago

Devtron through 2.2.0 fails to enforce authorization checks on the GET /orchestrator/api-token/webhook endpoint, allowing authenticated users to retrieve admin API tokens

Devtron through 2.2.0 fails to enforce authorization checks on the GET /orchestrator/api-token/webhook endpoint, allowing authenticated users to retrieve admin API tokens. Attackers with any authenticated account can query the endpoint w…

TwilightEPSS 0.31%via NVD

Most-affected vendors

By CVEs published in the period.