NewNormal Security turns CVEs since the previous batch into new detections, every day.
๐๐ฎ๐ถ๐น๐ ๐๐ฉ๐ ๐ฅ๐ฒ๐ฝ๐ผ๐ฟ๐ โ 25 Sep 2026
๐๐น๐ฟ๐ฒ๐ฎ๐ฑ๐ ๐ฐ๐ผ๐๐ฒ๐ฟ๐ฒ๐ฑ by NewScan:
๐ฅ๏ธ Unauthenticated MCP server โ whoever finds the port drives its tools, as seen in DBHub CVE-2026-61742
๐๐ฑ๐ฑ๐ฒ๐ฑ to NewScan ๐๐ผ๐ฑ๐ฎ๐:
๐ณ๏ธ Unauthenticated runtime-config endpoint โ the whole server config read anonymously, admin email included, as seen in OpenObserve CVE-2026-63645
๐ฅ๏ธ Container log viewer with auth switched off โ live logs of every container on the host: tokens, connection strings, reset links (Dozzle)
๐ฆ WooCommerce reviews plugin with no permission check โ a visitor does what the storefront reserves for staff (CVE-2026-89055)
Test your stack with NewScan โ free, self-hosted:
https://t.co/fmt3Xhf2El
#infosec #AppSec #InfoDisclosure #CSO #REDTEAM
NewNormal Security turns CVEs since the previous batch into new detections, every day.
๐๐ฎ๐ถ๐น๐ ๐๐ฉ๐ ๐ฅ๐ฒ๐ฝ๐ผ๐ฟ๐ โ 24 Sep 2026
๐๐ฑ๐ฑ๐ฒ๐ฑ to NewScan ๐๐ผ๐ฑ๐ฎ๐:
๐ Blank default JWT signing secret โ forge an admin session, and nothing can revoke it (SigNoz CVE-2026-97055)
๐ Reports built for callers who never logged in โ user names, devices, print history (PaperCut CVE-2026-87739)
๐ Path traversal in scan-to-fax settings โ an admin foothold becomes commands on the host (PaperCut CVE-2026-82077)
Test your stack with NewScan โ free, self-hosted:
https://t.co/fmt3Xhf2El
#infosec #AppSec #JWT #CSO #REDTEAM
NewNormal Security turns CVEs since the previous batch into new detections, every day.
๐๐ฎ๐ถ๐น๐ ๐๐ฉ๐ ๐ฅ๐ฒ๐ฝ๐ผ๐ฟ๐ โ 23 Sep 2026
๐๐ฑ๐ฑ๐ฒ๐ฑ to NewScan ๐๐ผ๐ฑ๐ฎ๐:
๐จ VPN gateway RCE, exploited in the wild โ unauthenticated code execution on the box that terminates your VPN (Check Point CVE-2026-93616, Check Point CVE-2026-85102)
๐จ Load balancer zero-day, exploited in the wild โ unauthenticated RCE on an internet-facing BIG-IP running APM, now fingerprinted even with its admin UI firewalled off (F5 CVE-2026-94127)
๐ฅ๏ธ Service-discovery server left open โ reads the admin password hash, then rewrites the live config every app behind it is pulling (Alibaba Nacos)
Test your stack with NewScan โ free, self-hosted:
https://t.co/fmt3Xhf2El
#infosec #AppSec #RCE #CSO #REDTEAM
NewNormal Security turns CVEs since the previous batch into new detections, every day.
๐๐ฎ๐ถ๐น๐ ๐๐ฉ๐ ๐ฅ๐ฒ๐ฝ๐ผ๐ฟ๐ โ 22 Sep 2026
๐๐ฑ๐ฑ๐ฒ๐ฑ to NewScan ๐๐ผ๐ฑ๐ฎ๐:
โ๏ธ Edge proxy path confusion and upgrade tunnelling โ smuggle a request past the proxy's own access control (Envoy CVE-2026-73548, CVE-2026-73552, CVE-2026-73553, CVE-2026-73511, CVE-2026-73551)
๐ฅ๏ธ Service mesh proxy admin console reachable with no password โ dump upstreams, listeners and the TLS material they reference (Envoy CVE-2026-73546)
๐ฆ Network monitoring appliance on an unpatched build โ read its stored config backups, or run commands on the box that sees every flow (ntop ntopng CVE-2026-84990, CVE-2026-82412)
Test your stack with NewScan โ free, self-hosted:
https://t.co/fmt3Xhf2El
#infosec #AppSec #RequestSmuggling #CSO #REDTEAM
NewNormal Security turns CVEs since the previous batch into new detections, every day.
๐๐ฎ๐ถ๐น๐ ๐๐ฉ๐ ๐ฅ๐ฒ๐ฝ๐ผ๐ฟ๐ โ 21 Sep 2026
๐๐ฑ๐ฑ๐ฒ๐ฑ to NewScan ๐๐ผ๐ฑ๐ฎ๐:
๐ Host-header injection โ the app builds its own download and asset links from a header you send, so every link can be aimed at the attacker (Eclipse Open VSX CVE-2025-12999)
๐ฆ Unauthenticated file upload in a vulnerable plugin build โ any visitor uploads a script and runs code (WooCommerce Online Product Designer CVE-2026-82187)
๐ฆ Vulnerable WordPress plugin builds โ shortcode injection, client-set order prices, unauthenticated import (GiveWP CVE-2026-85113, RestroPress CVE-2026-85010, To Do List Member CVE-2026-86802)
Test your stack with NewScan โ free, self-hosted:
https://t.co/fmt3Xhf2El
#infosec #AppSec #HostHeaderInjection #CSO #REDTEAM
NewNormal Security turns CVEs since the previous batch into new detections, every day.
๐๐ฎ๐ถ๐น๐ ๐๐ฉ๐ ๐ฅ๐ฒ๐ฝ๐ผ๐ฟ๐ โ 20 Sep 2026
๐๐ฑ๐ฑ๐ฒ๐ฑ to NewScan ๐๐ผ๐ฑ๐ฎ๐:
๐ฆ Missing authorization in a WordPress gallery plugin โ any logged-in user reads image records they were never granted, including client proofing sets (NextGEN Gallery CVE-2026-81652, CVE-2026-81654)
๐ฆ PHP object injection over XML-RPC โ attacker-chosen classes instantiated inside the site (Forminator CVE-2026-87067)
๐ Reverse-proxy admin panel now fingerprinted with its release โ the box fronting a self-hosted estate appears in the inventory, so advisories against it can be matched (nginx-proxy-manager CVE-2026-93964)
Test your stack with NewScan โ free, self-hosted:
https://t.co/fmt3Xhf2El
#infosec #AppSec #BrokenAccessControl #CSO #REDTEAM
NewNormal Security turns CVEs since the previous batch into new detections, every day.
๐๐ฎ๐ถ๐น๐ ๐๐ฉ๐ ๐ฅ๐ฒ๐ฝ๐ผ๐ฟ๐ โ 19 Sep 2026
๐๐ฑ๐ฑ๐ฒ๐ฑ to NewScan ๐๐ผ๐ฑ๐ฎ๐:
๐ฅ๏ธ Container registry open to anonymous push, or running a build whose bearer-token check can be bypassed โ every image, and a tag they can overwrite (zot CVE-2026-61833)
๐ฅ๏ธ Database console on the internet โ a login in front of a database whose permission checks any account can walk around (ArcadeDB CVE-2026-93593, CVE-2026-93594, CVE-2026-93595, CVE-2026-93598)
๐ฅ๏ธ Self-hosted AI model server with no authentication โ free inference on your GPUs, and one bad request stops the engine for everyone (as seen in vLLM CVE-2026-93592)
Test your stack with NewScan โ free, self-hosted:
https://t.co/fmt3Xhf2El
#infosec #AppSec #ExposedInterface #CSO #REDTEAM
NewNormal Security turns CVEs since the previous batch into new detections, every day.
๐๐ฎ๐ถ๐น๐ ๐๐ฉ๐ ๐ฅ๐ฒ๐ฝ๐ผ๐ฟ๐ โ 14 Sep 2026
๐๐ฑ๐ฑ๐ฒ๐ฑ to NewScan ๐๐ผ๐ฑ๐ฎ๐:
๐ณ๏ธ Video platform feeds that hand the uploader's email address and last-login time to an unauthenticated request, private videos included (WWBN AVideo CVE-2026-90549)
๐ Admin-only menu APIs answering anonymous callers, exposing the navigation a site hides and the user groups it is gated on (WWBN AVideo CVE-2026-90541)
๐ AVideo now identified by name and release from the pages it already serves โ what makes any advisory against it matchable
Test your stack with NewScan โ free, self-hosted:
https://t.co/fmt3Xhf2El
#infosec #AppSec #DataExposure #CSO #REDTEAM
NewNormal Security turns the last 24 hours of CVEs into new detections, every day.
๐๐ฎ๐ถ๐น๐ ๐๐ฉ๐ ๐ฅ๐ฒ๐ฝ๐ผ๐ฟ๐ โ 11 Sep 2026
๐๐ฑ๐ฑ๐ฒ๐ฑ to NewScan ๐๐ผ๐ฑ๐ฎ๐:
๐ฆ Reverse proxy on a build named in this week's advisories โ reach the protected backend with none of its auth, allowlist or rate-limit middleware (Traefik CVE-2026-88877, CVE-2026-88007, CVE-2026-88009, CVE-2026-88008, CVE-2026-88004, CVE-2026-88878, CVE-2026-88879, CVE-2026-88011, CVE-2026-88012)
๐ Authorization written as a list of HTTP verbs, with one verb missing from the list โ send the same request as PATCH and the access check never runs (OpenNMS CVE-2026-89054)
๐ณ๏ธ Media-server plugin status page answering anonymously โ read the host's binary paths, open ports and plugin log without logging in (WWBN AVideo CVE-2026-89248)
Test your stack with NewScan โ free, self-hosted:
https://t.co/fmt3Xhf2El
#infosec #AppSec #AuthBypass #CSO #REDTEAM
NewNormal Security turns the last 24 hours of CVEs into new detections, every day.
๐๐ฎ๐ถ๐น๐ ๐๐ฉ๐ ๐ฅ๐ฒ๐ฝ๐ผ๐ฟ๐ โ 10 Sep 2026
๐๐ฑ๐ฑ๐ฒ๐ฑ to NewScan ๐๐ผ๐ฑ๐ฎ๐:
๐จ Firewall management console auth bypass โ an internal session ID accepted from the network hands over the console as root (Cisco CVE-2026-20079)
๐จ SSL-VPN on an unpatched firmware train โ pre-auth memory corruption on the box facing the internet (Fortinet CVE-2025-25249)
๐จ Internet-exposed gateway flagged against a new actively-exploited auth bypass (Citrix CVE-2026-19490)
Test your stack with NewScan โ free, self-hosted:
https://t.co/fmt3Xhf2El
#infosec #AppSec #AuthBypass #CSO #REDTEAM
NewNormal Security turns the last 24 hours of CVEs into new detections, every day.
๐๐ฎ๐ถ๐น๐ ๐๐ฉ๐ ๐ฅ๐ฒ๐ฝ๐ผ๐ฟ๐ โ 9 Sep 2026
๐๐ฑ๐ฑ๐ฒ๐ฑ ๐๐ผ ๐ก๐ฒ๐๐ฆ๐ฐ๐ฎ๐ป ๐๐ผ๐ฑ๐ฎ๐:
๐จ Actively exploited pre-authentication RCE โ exposed N-central servers now surface the advisory before attackers take the RMM and managed endpoints (N-able CVE-2026-86218)
๐ฆ Regular-expression denial of service โ crafted commit author metadata can exhaust apps pinned to vulnerable GitPython builds (GitPython CVE-2026-87819)
๐ฆ Regular-expression denial of service โ attacker-controlled Git clone paths can exhaust vulnerable n8n workers (n8n CVE-2026-86081)
Test your stack with NewScan โ free, self-hosted:
https://t.co/fmt3Xhf2El
#infosec #AppSec #RCE #CSO #REDTEAM
NewNormal Security turns the last 24 hours of CVEs into new detections, every day.
๐๐ฎ๐ถ๐น๐ ๐๐ฉ๐ ๐ฅ๐ฒ๐ฝ๐ผ๐ฟ๐ โ 8 Sep 2026
๐๐น๐ฟ๐ฒ๐ฎ๐ฑ๐ ๐ฐ๐ผ๐๐ฒ๐ฟ๐ฒ๐ฑ by NewScan:
๐ณ๏ธ Database dump left readable in the web root โ every stored record, password hashes included, from one anonymous GET (code-projects CVE-2026-86519)
๐๐ฑ๐ฑ๐ฒ๐ฑ to NewScan ๐๐ผ๐ฑ๐ฎ๐:
๐ฅ๏ธ Management API serving with no password set โ full workspace and config control, plus a one-call public tunnel that puts the open instance on the internet (knowns CVE-2026-86543)
๐ฅ๏ธ Setup wizard still reachable on an unconfigured server โ gives up the exact build number, and leaves the first admin account there for the taking (JetBrains YouTrack)
Test your stack with NewScan โ free, self-hosted:
https://t.co/fmt3Xhf2El
#infosec #AppSec #AuthBypass #CSO #REDTEAM
NewNormal Security turns the last 24 hours of CVEs into new detections, every day.
๐๐ฎ๐ถ๐น๐ ๐๐ฉ๐ ๐ฅ๐ฒ๐ฝ๐ผ๐ฟ๐ โ 7 Sep 2026
๐๐น๐ฟ๐ฒ๐ฎ๐ฑ๐ ๐ฐ๐ผ๐๐ฒ๐ฟ๐ฒ๐ฑ by NewScan:
๐ IP allow-list bypass via a spoofed X-Forwarded-For โ reaches the admin pages the IP check was the only thing guarding (PrestaShop CVE-2026-84186)
๐๐ฑ๐ฑ๐ฒ๐ฑ to NewScan ๐๐ผ๐ฑ๐ฎ๐:
๐ฆ Deserialization RCE in an https://t.co/m8ii6riqDN file-upload control โ unauthenticated code execution on the web server (Progress Telerik CVE-2026-13181, CVE-2026-13182, CVE-2026-13183, CVE-2026-13184, CVE-2026-13185, CVE-2026-13186, CVE-2026-13190)
๐ฆ Stored XSS in a WordPress plugin's lazy-load image parser โ script that runs for every later visitor to the page (Powerkit CVE-2026-2390)
Test your stack with NewScan โ free, self-hosted:
https://t.co/fmt3Xhf2El
#infosec #AppSec #Deserialization #CSO #REDTEAM
NewNormal Security turns the last 24 hours of CVEs into new detections, every day.
๐๐ฎ๐ถ๐น๐ ๐๐ฉ๐ ๐ฅ๐ฒ๐ฝ๐ผ๐ฟ๐ โ 6 Sep 2026
๐๐ฑ๐ฑ๐ฒ๐ฑ to NewScan ๐๐ผ๐ฑ๐ฎ๐:
๐ Search platform fingerprinting โ Apache Solr's exact build now reads off the admin page it already serves, which is what makes any advisory against it matchable
๐ Search cluster fingerprinting โ an Elasticsearch node's real version instead of just "a cluster is here", and CrateDB no longer answers to the name
๐ Document database fingerprinting โ CouchDB's version, still readable on an install that has an admin password set
Test your stack with NewScan โ free, self-hosted:
https://t.co/fmt3Xhf2El
#infosec #AppSec #Fingerprinting #CSO #REDTEAM
NewNormal Security turns the last 24 hours of CVEs into new detections, every day.
๐๐ฎ๐ถ๐น๐ ๐๐ฉ๐ ๐ฅ๐ฒ๐ฝ๐ผ๐ฟ๐ โ 3 Sep 2026
๐๐น๐ฟ๐ฒ๐ฎ๐ฑ๐ ๐ฐ๐ผ๐๐ฒ๐ฟ๐ฒ๐ฑ by NewScan:
๐จ Unauthenticated MCP server access โ anonymous clients can list and call an AI gateway's tools, hijacking sessions (LiteLLM CVE-2026-59822)
๐๐ฑ๐ฑ๐ฒ๐ฑ to NewScan ๐๐ผ๐ฑ๐ฎ๐:
๐จ Auth bypass via path-suffix match โ a request ending in /configs skips authentication, reaching workflow creation and RCE as root (Kestra CVE-2026-49869)
Test your stack with NewScan โ free, self-hosted:
https://t.co/fmt3Xhf2El
#infosec #AppSec #AuthBypass #CSO #REDTEAM
NewNormal Security turns the last 24 hours of CVEs into new detections, every day.
๐๐ฎ๐ถ๐น๐ ๐๐ฉ๐ ๐ฅ๐ฒ๐ฝ๐ผ๐ฟ๐ โ 2 Sep 2026
๐๐ฑ๐ฑ๐ฒ๐ฑ to NewScan ๐๐ผ๐ฑ๐ฎ๐:
๐ฆ Vulnerable XML parser version โ crafted end tags can stall the Node.js event loop (xmldom CVE-2026-83619)
๐ฆ Vulnerable gRPC library version โ fragmented HTTP/2 frames can exhaust server memory (gRPC-Go CVE-2026-84304)
Test your stack with NewScan โ free, self-hosted:
https://t.co/fmt3Xhf2El
#infosec #AppSec #DoS #CSO #REDTEAM
NewNormal Security turns the last 24 hours of CVEs into new detections, every day.
๐๐ฎ๐ถ๐น๐ ๐๐ฉ๐ ๐ฅ๐ฒ๐ฝ๐ผ๐ฟ๐ โ 30 Aug 2026
๐๐น๐ฟ๐ฒ๐ฎ๐ฑ๐ ๐ฐ๐ผ๐๐ฒ๐ฟ๐ฒ๐ฑ by NewScan:
๐ MCP server that authenticates no caller โ drive every tool the agent exposes, anonymously (argocd-mcp CVE-2026-82456)
๐ JWT accepted without checking its signature โ forge a token for any user (Omnivore CVE-2026-82454)
๐๐ฑ๐ฑ๐ฒ๐ฑ to NewScan ๐๐ผ๐ฑ๐ฎ๐:
๐ SSRF allow-list that forgets carrier-grade NAT โ reach the cloud metadata service the guard was written to block (Memos CVE-2026-82476)
๐ฆ WordPress SSO plugin with an authentication bypass โ sign in as any account, no password (miniOrange SAML Single Sign On CVE-2026-75807)
Test your stack with NewScan โ free, self-hosted:
https://t.co/fmt3Xhf2El
#infosec #AppSec #SSRF #CSO #REDTEAM