Category Wire

Automated cyber signal feeds.

CVE-2026-54049 – Sakai Conversations has a Stored XSS Issue

​CVE ID :CVE-2026-54049 Published : Oct. 1, 2026, 8:17 p.m. | 1 hour, 4 minutes ago Description :Sakai is a Collaboration and Learning Environment (CLE). From versions 23.0 to before 23.5, and versions 25.0 to before 25.3, the Sakai Conversations tool stores…

CVE-2026-104059 – Lektor 3.3.14 CSRF via Admin API Endpoints

​CVE ID :CVE-2026-104059 Published : Oct. 1, 2026, 6:17 p.m. | 1 hour, 3 minutes ago Description :Lektor 3.3.14 and 3.4.0b15 contains a cross-site request forgery vulnerability in the admin API blueprint that allows unauthenticated attackers to perform state-changing actions by sending…

CVE-2026-97662 – Argument injection in the diff scan operation in AWS security-agent-mcp-server allows arbitrary host file creation, overwrite, and truncation outside the intended workspace

​CVE ID :CVE-2026-97662 Published : Oct. 1, 2026, 6:17 p.m. | 1 hour, 3 minutes ago Description :An argument injection issue in the diff scan operation in AWS security-agent-mcp-server before version 0.2.0 might allow context-dependent threat actors to create, overwrite, or truncate…

CVE-2026-104018 – VxWorks 7 improper privilege management

​CVE ID :CVE-2026-104018 Published : Oct. 1, 2026, 6:17 p.m. | 1 hour, 3 minutes ago Description :An improper privilege management vulnerability (CWE-269) exists in the command shell of Wind River VxWorks 7 all versions up to 26.09. when configured to enforce…