Articles tagged Code Execution
-
VulnerabilitySogou Input Method Code Execution (CVE-2026-51990)
CVE-2026-51990 is a CVSS 9.8 remote code execution flaw in the biz_helper component of Sogou Input Method, reported exploited by VulnCheck KEV.
-
VulnerabilityTutor LMS – eLearning and online course solution Code Execution (CVE-2026-16759)
CVE-2026-16759 is a CVSS 6.5 unauthenticated remote code execution flaw in the Tutor LMS WordPress plugin, per VulnCheck alone.
-
VulnerabilityArelle Code Execution (CVE-2026-42796)
CVE-2026-42796 is a CVSS 9.8 unauthenticated RCE in Arelle before 2.39.10: the REST configure endpoint loads plugins from a caller-supplied URL. VulnCheck KEV.
-
VulnerabilityAutoAgent Code Execution (CVE-2026-86124)
CVE-2026-86124 is a CVSS 9.8 unauthenticated RCE in HKUDS AutoAgent: the sandbox TCP server runs commands as root. VulnCheck KEV-listed Sept. 18, 2026.
-
Vulnerability5 CVEs Across 3 Vendors (CVE-2026-59971)
Five 2026 MCP-server CVEs: unauthenticated SQL execution (CVSS 10) in MySQL MCP Server, a code-execution flaw in functype-mcp-server, and three CKAN issues.
-
Vulnerability3 n8n CVEs (CVE-2025-68613)
A KEV-listed, CVSS 9.9 remote code execution flaw in n8n workflow expressions, plus two related sandbox-escape CVEs in the same legacy engine.
-
VulnerabilityACL Analytics 11.x-13.0.0.579 Code Execution (CVE-2018-25320)
CVE-2018-25320 is a CVSS 9.8 critical arbitrary code execution vulnerability in ACL Analytics, only recently scored by NVD despite the original disclosure dating to 2018.