L/BLAB BOTSPUBLIC THREAT INTELLIGENCE NODE
CVE KNOWLEDGE BASE

Intelligence
Explorer.

Investigue vulnerabilidades por identificador, produto afetado ou descrição. Use severidade, CVSS e EPSS juntos para orientar a prioridade.

// THREAT ACTIVITY

Grupos & malware emergente

Atividade pública observada em leak sites e repositórios comunitários. Alegações de vítimas não representam confirmação independente de incidente.

RANSOMWARE GROUPSRECENT CLAIMS
lamashtu10 menções
qilin10 menções
krybit9 menções
thegentlemen9 menções
Booba Project7 menções
akira7 menções
incransom6 menções
Storm5 menções
rhysida5 menções
play4 menções
INFOSTEALERSOBSERVED

Sem famílias correlacionadas no recorte recente.

RECENT RANSOMWARE CLAIMSRANSOMWARE.LIVE
playBold Spring NurseryUS · Agriculture and Food Production · 2026-10-04
playSilicon Valley GlassUS · Manufacturing · 2026-10-04
emperadorOMUR HIRDAVAT LTDTR · Manufacturing · 2026-10-04
qilinChadwick SwitchboardsAU · Manufacturing · 2026-10-04
qilinEmserES · Manufacturing · 2026-10-04
qilinCotesmaCL · Manufacturing · 2026-10-04
direwolfSoftruckBR · Technology · 2026-10-04
StormNipigon District Memorial HospitalCA · Healthcare · 2026-10-04
krybiteuroditel.comFR · Technology · 2026-10-04
krybitsuperpack.com.coCO · Retail & E-Commerce · 2026-10-04
krybitdaralteb.comIR · Healthcare · 2026-10-04
qilinUnident GroupUS · Other · 2026-10-04
MALWARE FAMILIES / 7 DAYSMALWAREBAZAAR
Configure a Auth-Key gratuita do abuse.ch para habilitar detecções recentes do MalwareBazaar.

FONTES: RANSOMWARE.LIVE + MALWAREBAZAAR / ABUSE.CH · CACHE 1H

11641 REGISTROS ENCONTRADOSFEED 2026-09-29
CVE-2026-18137HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to execute arbitrary ESQL commands due to improper neutralization of special elements used in an ESQL command.

AFFECTED SURFACEProduct not specified
CVSS 8.1EPSS 0.30%
CVE-2026-18134HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to obtain sensitive information due to cleartext transmission of sensitive information.

AFFECTED SURFACEProduct not specified
CVSS 7.5EPSS 0.13%
CVE-2026-18133MEDIUM

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote authenticated attacker to modify server files due to path traversal.

AFFECTED SURFACEProduct not specified
CVSS 5.4EPSS 0.30%
CVE-2026-18132MEDIUM

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote authenticated attacker to perform unauthorized payment mutation actions due to missing authorization.

AFFECTED SURFACEProduct not specified
CVSS 6.5EPSS 0.21%
CVE-2026-18131HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to execute arbitrary JavaScript in an authenticated user's browser due to improper neutralization of HTML input.

AFFECTED SURFACEProduct not specified
CVSS 8.2EPSS 0.25%
CVE-2026-18124MEDIUM

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a local attacker to obtain sensitive information due to insufficiently protected credentials.

AFFECTED SURFACEProduct not specified
CVSS 6.5EPSS 0.10%
CVE-2026-18123HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to cause a denial of service due to the improper use of reflection with externally controlled input.

AFFECTED SURFACEProduct not specified
CVSS 7.6EPSS 0.19%
CVE-2026-18114MEDIUM

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to read arbitrary files due to improper path canonicalization.

AFFECTED SURFACEProduct not specified
CVSS 6.5EPSS 0.24%
CVE-2026-18095HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote authenticated attacker to execute arbitrary code due to a buffer overflow.

AFFECTED SURFACEProduct not specified
CVSS 8.5EPSS 0.42%
CVE-2026-18074HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to perform unauthorized actions due to improper authentication and missing authorization.

AFFECTED SURFACEProduct not specified
CVSS 8.2EPSS 0.41%
CVE-2026-18066HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a local attacker to obtain sensitive information and trigger unauthorized actions due to server-side request forgery.

AFFECTED SURFACEProduct not specified
CVSS 7.9EPSS 0.10%
CVE-2026-17647HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a local attacker to execute arbitrary commands due to the inclusion of functionality from an untrusted control sphere.

AFFECTED SURFACEProduct not specified
CVSS 8.8EPSS 0.22%
CVE-2026-17646HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote authenticated attacker to obtain sensitive information due to improper restriction of XML external entity references.

AFFECTED SURFACEProduct not specified
CVSS 8.5EPSS 0.29%
CVE-2026-17645CRITICAL

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote authenticated attacker to gain elevated privileges due to improper privilege management.

AFFECTED SURFACEProduct not specified
CVSS 9.1EPSS 0.38%
CVE-2026-17644HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a local attacker to gain unauthorized access to sensitive information and modify transaction data due to the use of hard-coded credentials.

AFFECTED SURFACEProduct not specified
CVSS 8.8EPSS 0.10%
CVE-2026-17643HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a local attacker to obtain sensitive information and perform unauthorized actions due to insufficiently protected credentials.

AFFECTED SURFACEProduct not specified
CVSS 8.8EPSS 0.10%
CVE-2026-17637HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow an adjacent-network attacker to execute arbitrary code due to deserialization of untrusted data.

AFFECTED SURFACEProduct not specified
CVSS 8.8EPSS 0.24%
CVE-2026-17636HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote authenticated attacker to execute arbitrary code due to improper validation of a specified quantity.

AFFECTED SURFACEProduct not specified
CVSS 8.8EPSS 0.50%
CVE-2026-17635CRITICAL

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to perform unauthorized actions due to improper configuration of HTTP method-based security constraints.

AFFECTED SURFACEProduct not specified
CVSS 9.1EPSS 0.35%
CVE-2026-17620MEDIUM

IBM Financial Transaction Manager (FTM) for RedHat OpenShift 4.0.6.0 through 4.0.6.0.0.6.0 Refresh (Operator 4.4.6+20260807.081800)4.0.7.04.0.8.04.0.9.04.0.10.0 Interim Fix 064 IBM Financial Transaction Manager transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.

AFFECTED SURFACEProduct not specified
CVSS 5.3EPSS 0.13%
CVE-2026-17618HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote unauthenticated attacker to view and modify sensitive information and cause a denial of service due to improper authorization.

AFFECTED SURFACEProduct not specified
CVSS 7.3EPSS 0.22%
CVE-2026-17472CRITICAL

IBM Concert 1.0.0 through 3.0.0 could allow a remote authenticated attacker to access or modify unauthorized resources due to the use of wildcards in RBAC permission definitions.

AFFECTED SURFACEProduct not specified
CVSS 9.6EPSS 0.30%
CVE-2026-17465MEDIUM

IBM Concert 1.0.0 through 3.0.0 could allow a remote authenticated attacker to cause a denial of service due to improper enforcement of storage limits.

AFFECTED SURFACEProduct not specified
CVSS 6.5EPSS 0.28%
CVE-2026-17102HIGH

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.

AFFECTED SURFACEibm datastage on cloud pak for data
CVSS 8.8EPSS 0.58%