Skip to main content

Threats Tagged 'cve-2026-18997'

View all threats tagged with 'cve-2026-18997'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cve-2026-18997

Threats Tagged 'cve-2026-18997'

Click on any threat for detailed analysis and mitigation recommendations

A vulnerability in cosmicstack-labs mercury-agent up to version 1.1.12 allows remote attackers to cause incorrect authorization via manipulation of the Agent.handleBgCommand function. The issue affects the background command handler component and could lead to limited confidentiality, integrity, and availability impacts. The vulnerability has a CVSS score of 6.3 and is classified as low severity. No patch or official fix has been reported yet, and the project has not responded to the issue report. Exploit code has been made public, but no known exploitation in the wild has been confirmed.

Join the discussion

CVE-2026-18997 is a medium severity vulnerability in cosmicstack-labs mercury-agent up to version 1.1.12. It involves incorrect authorization in the Agent.handleBgCommand function, allowing remote attackers to manipulate background commands without proper authorization. The vulnerability has a CVSS 4.0 base score of 5.3. The project has been informed but has not yet responded or issued a fix. Exploit code has been publicly disclosed, but no known active exploitation in the wild is reported.

Join the discussion

Showing 1 to 2 of 2 results

Filters:Tag: cve-2026-18997
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses