Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.

Threats Tagged 'cwe-829'

View all threats tagged with 'cwe-829'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cwe-829

Threats Tagged 'cwe-829'

Click on any threat for detailed analysis and mitigation recommendations

CVE-2026-86504: CWE-829 in JetBrains IntelliJ IDEACVE-2026-86504
0

In JetBrains IntelliJ IDEA before 2026.2.2 missing project-trust confirmation before building a Dev Container allowed host-level code execution

Join the discussion
CVE-2026-86504: CWE-829 in JetBrains IntelliJ IDEACVE-2026-86504
0

In JetBrains IntelliJ IDEA before 2026.2.2 missing project-trust confirmation before building a Dev Container allowed host-level code execution

Join the discussion
CVE-2026-58569: CWE-829: Inclusion of Functionality from Untrusted Control Sphere in Dell PowerStore 500TCVE-2026-58569
0

Dell PowerStore contains an Inclusion of Functionality from Untrusted Control Sphere vulnerability. An authenticated user with limited privileges could potentially exploit this vulnerability to execute arbitrary code with root privileges..

Join the discussion
CVE-2026-76139: Inclusion of Functionality from Untrusted Control Sphere in Red Hat Red Hat Advanced Cluster Management for Kubernetes 2.11CVE-2026-76139
0

CVE-2026-76139 is a high-severity supply chain vulnerability in Red Hat Advanced Cluster Management for Kubernetes 2.11. The acm-operator-bundle build process downloads and executes a script from a remote source without verifying its authenticity, exposing sensitive build credentials such as GitHub tokens and registry passwords. This flaw allows a remote attacker to inject malicious code, potentially compromising build resources and the integrity of the resulting operator bundle. Red Hat has not provided a patch or mitigation that meets their criteria for ease of use and applicability. The vulnerability is rated with a CVSS score of 8.0, indicating a high impact on confidentiality, integrity, and availability.

Join the discussion
CVE-2026-76139: Inclusion of Functionality from Untrusted Control Sphere in Red Hat Red Hat Advanced Cluster Management for Kubernetes 2.11CVE-2026-76139
0

CVE-2026-76139 is a high-severity vulnerability in the acm-operator-bundle component of Red Hat Advanced Cluster Management for Kubernetes 2.11. The build process downloads and executes a script from a remote source without verifying its authenticity or integrity. This allows a remote attacker to inject malicious code, potentially gaining unauthorized access to sensitive build credentials such as GitHub tokens and registry passwords, compromising build resources and the resulting operator bundle.

Join the discussion
CVE-2026-22306: CWE-494 Download of code without integrity check in Ozols Grupa OZOLSCVE-2026-22306
0

Download of code without integrity check, inclusion of functionality from untrusted control sphere, and cleartext transmission of sensitive information vulnerability in Ozols Grupa OZOLS on Windows caused by an abandoned auto-update domain. Affected component: the automatic update channel - OzolsSQL client update path, the <db>_update SQL Server Agent job (@subsystem = N'ActiveScripting') and serv_update.vbs. This issue affects OZOLS: before 1.1.1233.

Join the discussion
CVE-2026-62680: CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in orval-labs orvalCVE-2026-62680
0

Orval generates type-safe JavaScript clients in TypeScript from OpenAPI v3 and Swagger v2 specifications. Prior to 8.22.0, Orval resolves remote and local external $ref values without an allowlist or confinement to the input directory. Processing an attacker-controlled OpenAPI description can cause requests from the developer or CI host to attacker-selected or internal HTTP services, read absolute or out-of-tree local files, and inline untrusted remote schemas into generated clients. The affected code is packages/orval/src/import-specs.ts external reference loading. This issue is fixed in version 8.22.0.

Join the discussion
CVE-2026-45272: CWE-94: Improper Control of Generation of Code ('Code Injection') in PoxenStudio talebookCVE-2026-45272
0

MyBooks is an enhanced and easy-to-use personal ebook management web server also known as Talebook. In 3.41.2 and earlier, the AdminSettings.post handler in webserver/handlers/admin.py accepts SOCIAL_AUTH key names without validating quotes or newline characters, and SettingsLoader.dumpfile in webserver/loader.py concatenates those names into the generated Python source file auto.py without escaping them. An administrator can submit a crafted SOCIAL_AUTH key name that closes the settings dictionary and injects arbitrary Python statements. The application later executes those statements because SettingsLoader.loadfile imports auto.py as a module, and setting autoreload to true invokes restart_async so a process supervisor restarts the service and triggers the import. Successful exploitation executes commands with the privileges of the application service account and can disclose data, modify files, establish persistence, or disrupt the service. Related authorization and registration vulnerabilities can reduce the effective privilege requirement in a chained attack, but the standalone vulnerability requires administrator access. This issue is fixed in version 3.42.0.

Join the discussion
CVE-2026-73367: CWE-829 Inclusion of Functionality from Untrusted Control Sphere in supsystic Easy Google MapsCVE-2026-73367
0

Unauthenticated Remote File Inclusion in Easy Google Maps < 1.14.2 versions.

Join the discussion
CVE-2026-73851: CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in microsoft kiotaCVE-2026-73851
0

CVE-2026-73851 is a path traversal vulnerability in Microsoft Kiota affecting versions prior to 1.29.1. It allows an attacker controlling the OpenAPI description to supply crafted file references that resolve outside the intended plugin package, potentially causing unauthorized file inclusion or disclosure. Initial mitigations rejected unsafe paths based on raw strings but failed to decode percent-encoded or obfuscated inputs, allowing bypasses. Subsequent fixes decode inputs before validation and reject control characters and Unicode homoglyphs. Users should upgrade to the first release after version 1.33.0 that includes these fixes. Workarounds include generating plugins only from trusted OpenAPI descriptions and reviewing manifests for unsafe file references.

Join the discussion

Showing 1 to 10 of 16 results

Filters:Tag: cwe-829
Page 1 of 2
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses