Retour aux CVE tendances

Semaine du 3 août 2026

CVE tendances* des 7 derniers jours (du 27 juillet 2026 au 3 août 2026)

1
CVE-2026-66066Rails / Rails
Nouveau
Score SYRN94
CVSS9.5
Activité109
Publié30/07/2026
StatutTrès actif

Action Pack is a framework for handling and responding to web requests. In versions prior to 7.2.3.2, 8.0.5.1 and 8.1.3.1, Active Storage does not disable libvips operations marked unsafe for untrusted content, allowing a crafted upload to invoke such an operation. Consuming applications are affected when configured to use libvips and accept image uploads from untrusted users. An unauthenticated attacker may exploit this behavior to read arbitrary files accessible to the Rails process, including environment variables and application secrets. Exposure of credentials such as secret_key_base or external-service tokens may enable remote code execution or lateral movement. This issue has been fixed in versions 7.2.3.2, 8.0.5.1 and 8.1.3.1.

2
CVE-2026-20316Cisco Systems / Secure Firewall Management Center
NouveauKEV
Score SYRN92
CVSS5.3
Activité75
Publié29/07/2026
StatutTrès actif

A vulnerability in the web interface of Cisco Secure Firewall Management Center (FMC) Software could allow an unauthenticated, remote attacker to log in to an affected device using a low-privileged account to access sensitive data within the impacted systems. This vulnerability is due to the presence of static user credentials for a low-privileged account. An attacker could exploit this vulnerability by using the account to log in to an affected system. A successful exploit could allow the attacker to log in to the affected system and access sensitive data as the low-privileged user.  Note: If the FMC management interface does not have public internet access, the attack surface that is associated with this vulnerability is reduced.   Cisco has assigned this security advisory a Security Impact Rating (SIR) of High rather than Medium as the score indicates. The reason is that this vulnerability can be used with other Cisco Secure FMC Software vulnerabilities to elevate privileges.

3
CVE-2026-63077Jetbrains / Teamcity
Nouveau
Score SYRN79
CVSS9.8
Activité74
Publié27/07/2026
StatutTrès actif

In JetBrains TeamCity before 2026.1.3, 2025.11.7 unauthenticated remote code execution was possible via the agent polling protocol

4
CVE-2023-23397Microsoft / 365 Apps
KEV
Score SYRN100
CVSS9.8
Activité66
Publié14/03/2023
StatutTrès actif

Microsoft Outlook Elevation of Privilege Vulnerability

5
CVE-2026-16812Arista / Velocloud Orchestrator
NouveauKEV
Score SYRN96
CVSS10.0
Activité55
Publié27/07/2026
StatutTrès actif

VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue may allow a remote attacker to access privileged internal functionality and impact the VCO host. Successful exploitation may compromise the confidentiality, integrity, and availability of the orchestrator and data managed by the orchestrator. This functionality was intended to be for internal use only and is not intended to be remotely accessible. Hosted and Dedicated versions of VCO have already been patched in advance of this notice going out. This issue was discovered externally and is known to be actively exploited.

6
CVE-2023-30212Ourphp / Ourphp
Score SYRN87
CVSS6.1
Activité44
Publié26/04/2023
StatutTrès actif

OURPHP <= 7.2.0 is vulnerale to Cross Site Scripting (XSS) via /client/manage/ourphp_out.php.

7
CVE-2019-2215Netapp / Cloud Backup
KEV
Score SYRN96
CVSS7.8
Activité44
Publié11/10/2019
StatutTrès actif

A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interaction is required to exploit this vulnerability, however exploitation does require either the installation of a malicious local application or a separate vulnerability in a network facing application.Product: AndroidAndroid ID: A-141720095

8
CVE-2026-16232Checkpoint / Multi-Domain Security Management
KEV
Score SYRN98
CVSS9.3
Activité40
Publié22/07/2026
StatutTrès actif

An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges. Successful exploitation allows the attacker to modify security policies and security configurations. Remote exploitation requires internet access to the Management Server IP address and a configuration that does not restrict Trusted Clients. Check Point is aware that this vulnerability is being exploited and has affected a very small number of customers.

9
CVE-2023-3519Citrix / Netscaler
KEVRansomware
Score SYRN100
CVSS9.8
Activité39
Publié19/07/2023
StatutTrès actif

Unauthenticated remote code execution

10
CVE-2023-23752Joomla / Joomla\!
KEV
Score SYRN97
CVSS5.3
Activité38
Publié16/02/2023
StatutTrès actif

An issue was discovered in Joomla! 4.0.0 through 4.2.7. An improper access check allows unauthorized access to webservice endpoints.

* Le classement tendance est basé sur le nombre de signalements collectés par les sources de threat intelligence de SYRN sur la période donnée.

Surveillez ces vulnérabilités et soyez alerté lorsque de nouvelles menaces ciblent votre stack.

Commencer gratuitement