CVE-2026-23780
High Severity
Description
An issue was discovered in BMC Control-M/MFT 9.0.20 through 9.0.22. A SQL injection vulnerability in the MFT API's debug interface allows an authenticated attack...
Related Vulnerabilities
- CVE-2026-35651: OpenClaw versions 2026.2.13 through 2026.3.24 contain an ANSI escape sequence injection vulnerabilit MEDIUM
- CVE-2026-40224: In systemd 259 before 260, there is local privilege escalation in systemd-machined because varlink c MEDIUM
- CVE-2026-5981: A vulnerability has been found in D-Link DIR-605L 2.13B01. This affects the function formAdvFirewall HIGH
- CVE-2026-40226: In nspawn in systemd 233 through 259 before 260, an escape-to-host action can occur via a crafted op MEDIUM
- CVE-2025-14545: The YML for Yandex Market WordPress plugin before 5.0.26 is vulnerable to Remote Code Execution via CRITICAL
Related Coverage
Threat Actors