Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.

Medium Severity Threats

Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (2):Severity: Medium

Filtered Threats

Click on any threat for detailed analysis and mitigation recommendations

CVE-2026-55373: CWE-190: Integer Overflow or Wraparound in AcademySoftwareFoundation openexrCVE-2026-55373
0

OpenEXR is the reference implementation and specification for the EXR image format, widely used in the motion picture industry. Versions prior to 3.2.10, 3.3.12, and 3.4.13 contain an infinite-loop vulnerability in SampleCountChannel. The helper roundListSizeUp() rounds a sample-list size up to the next power of two using repeated unsigned left shifts, which terminates for normal values but fails for UINT_MAX: the sequence reaches 0x80000000, and the next left shift wraps the 32-bit value to 0. Because 0 remains less than UINT_MAX, the loop never progresses and never exits. The bug is reachable through public OpenEXRUtil APIs, either by editing the sample-count buffer through SampleCountChannel::Edit (whose destructor calls endEdit()) or by calling SampleCountChannel::set(x, y, UINT_MAX) on a valid pixel. This issue has been fixed in versions 3.2.10, 3.3.12, and 3.4.13.

Join the discussion
CVE-2026-55371: CWE-20: Improper Input Validation in AcademySoftwareFoundation openexrCVE-2026-55371
0

OpenEXR is the reference implementation and specification for the EXR high-dynamic-range image file format, widely used in the motion picture industry. Versions 3.4.0 through 3.4.12 contain a NULL pointer dereference in the OpenEXRCore function exr_attr_set_bytes(). The public setter validates the top-level exr_attr_bytes_t value pointer but does not verify that the nested type_hint pointer is non-NULL when hint_length is greater than zero. When a caller supplies a positive hint_length together with a NULL type_hint, exr_attr_bytes_create() allocates a destination type-hint buffer and then copies from the NULL source pointer, causing a deterministic crash. The flaw is reachable through the public OpenEXRCore C API and results in a denial of service. The issue is fixed in version 3.4.13.

Join the discussion
CVE-2026-55059: CWE-787: Out-of-bounds Write in AcademySoftwareFoundation openexrCVE-2026-55059
0

OpenEXR versions prior to 3.2.10, 3.3.12, and 3.4.13 contain a heap out-of-bounds write vulnerability in the SampleCountChannel::set function. This occurs because the Y coordinate is incorrectly computed using dataWindow.min.x instead of dataWindow.min.y, leading to potential heap corruption and process crashes when handling deep image data windows where min.x differs from min.y. The issue is reachable via the public DeepImage API and has been fixed in the specified versions.

Join the discussion
CVE-2026-54920: CWE-190: Integer Overflow or Wraparound in AcademySoftwareFoundation openexrCVE-2026-54920
0

A vulnerability in OpenEXR versions 3.4.0 through 3.4.12 allows a crafted HTJ2K-compressed EXR file to cause an unconditional process abort when exr_start_read() is called on untrusted input. This results in a denial of service due to an assertion failure triggered by a specific QCD marker value. The issue arises from the OpenJPH library's use of an assertion that calls abort() directly, bypassing error handling. The vulnerability is fixed in version 3.4.13.

Join the discussion
ThreatFox IOCs for 2026-08-24
0

ThreatFox IOCs for 2026-08-24

Join the discussion
CVE-2026-68516: CWE-787: Out-of-bounds Write in AcademySoftwareFoundation openexrCVE-2026-68516
0

OpenEXR versions 3.4.0 through 3.4.13 contain an out-of-bounds write vulnerability in the HTJ2K decoder path. A crafted HTJ2K-compressed EXR file with specific JPEG 2000 SIZ fields can cause a stack out-of-bounds write, leading to a denial of service by crashing the application. This occurs because the decoder does not properly reject image-offset/tile-grid geometry where the first tile is outside the visible image. The issue is fixed in version 3.4.14.

Join the discussion
CVE-2026-78435: Path Traversal in Faveo HelpdeskCVE-2026-78435
0

CVE-2026-78435 is a path traversal vulnerability in Faveo Helpdesk versions 2.0.0 through 2.0.3. It affects the unlink function in the Logo Handler component, allowing remote attackers to manipulate the argument data1 to perform path traversal. The vulnerability has been publicly disclosed, but no official patch or vendor response is available yet. The CVSS 4.0 score rates this as a medium severity issue.

Join the discussion
CVE-2026-78434: Missing Authentication in Faveo HelpdeskCVE-2026-78434
0

CVE-2026-78434 is a medium severity vulnerability in Faveo Helpdesk versions 2.0.0 through 2.0.3. It affects the post_ticket_reply function in the FormController component, allowing remote attackers to bypass authentication. The vulnerability has a published exploit, but the vendor has not yet responded or provided a fix.

Join the discussion
CVE-2026-78266: CWE-862 Missing Authorization in Ruben Garcia AutomatorWPCVE-2026-78266
0

CVE-2026-78266 is a medium severity vulnerability in AutomatorWP versions up to 5.8.3 involving missing authorization (CWE-862). It allows subscribers to bypass intended access controls, potentially leading to unauthorized actions that impact integrity without affecting confidentiality or availability.

Join the discussion
CVE-2026-27364: CWE-862 Missing Authorization in AnalogWP Style KitsCVE-2026-27364
0

CVE-2026-27364 is a medium severity vulnerability in AnalogWP Style Kits affecting versions up to 2.6.5. It involves missing authorization controls (CWE-862) that allow subscribers to perform unauthorized actions. The vulnerability does not impact confidentiality or availability but can lead to integrity issues. No official patch or remediation guidance is currently available.

Join the discussion

Showing 1 to 10 of 8055 results

Filters:Severity: Medium
Page 1 of 806
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses