CVE-2026-23781
Critical Severity
Description
An issue was discovered in BMC Control-M/MFT 9.0.20 through 9.0.22. A set of default debug user credentials is hardcoded in cleartext within the application ...
Related Vulnerabilities
- CVE-2026-40151: PraisonAI is a multi-agent teams system. Prior to 4.5.128, the AgentOS deployment platform exposes a MEDIUM
- CVE-2026-35597: Vikunja Vulnerable to TOTP Brute-Force Due to Non-Functional Account Lockout MEDIUM
- CVE-2026-40223: In systemd 258 before 260, a local unprivileged user can trigger an assert when a Delegate=yes and U MEDIUM
- CVE-2026-40157: PraisonAI is a multi-agent teams system. Prior to 4.5.128, cmd_unpack in the recipe CLI extracts .pr CRITICAL
- CVE-2026-35654: OpenClaw before 2026.3.25 contains an authorization bypass vulnerability in Microsoft Teams feedback MEDIUM
Related Coverage
Threat Actors