L/BLAB BOTSPUBLIC THREAT INTELLIGENCE NODE
CVE KNOWLEDGE BASE

Intelligence
Explorer.

Investigue vulnerabilidades por identificador, produto afetado ou descrição. Use severidade, CVSS e EPSS juntos para orientar a prioridade.

// THREAT ACTIVITY

Grupos & malware emergente

Atividade pública observada em leak sites e repositórios comunitários. Alegações de vítimas não representam confirmação independente de incidente.

RANSOMWARE GROUPSRECENT CLAIMS
thegentlemen23 menções
qilin11 menções
UmBra9 menções
Eclipse5 menções
SilentRansomGroup5 menções
Panzer4 menções
incransom4 menções
Black X3 menções
akira3 menções
arcusmedia3 menções
INFOSTEALERSOBSERVED

Sem famílias correlacionadas no recorte recente.

RECENT RANSOMWARE CLAIMSRANSOMWARE.LIVE
dragonforceTEXMA International Co., LtdTW · Manufacturing · 2026-10-10
thegentlemenRoyal Thai Air ForceTH · Government & Defense · 2026-10-10
UmBraHelwan University (HITU)EG · Education · 2026-10-10
RedactDexComUS · Healthcare · 2026-10-10
qilinACI Proyectos SASCO · Other · 2026-10-10
exitiumKOIKE Sanso Kogoyo Co. Ltd.JP · Manufacturing · 2026-10-10
rhysidaGress Clark Young & SchoepperUS · Professional Services · 2026-10-10
qilinGlenhardie Country ClubUS · Hospitality · 2026-10-10
qilinLD ConstructoraCL · Manufacturing · 2026-10-10
DeadlockSaber1US · Not Found · 2026-10-09
Deadlockidi pharmaES · Healthcare · 2026-10-09
safepayhoteldelfinolugano.chCH · Hospitality · 2026-10-09
MALWARE FAMILIES / 7 DAYSMALWAREBAZAAR
Configure a Auth-Key gratuita do abuse.ch para habilitar detecções recentes do MalwareBazaar.

FONTES: RANSOMWARE.LIVE + MALWAREBAZAAR / ABUSE.CH · CACHE 1H

14535 REGISTROS ENCONTRADOSFEED 2026-10-06
CVE-2026-18066HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a local attacker to obtain sensitive information and trigger unauthorized actions due to server-side request forgery.

AFFECTED SURFACEProduct not specified
CVSS 7.9EPSS 0.10%
CVE-2026-17647HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a local attacker to execute arbitrary commands due to the inclusion of functionality from an untrusted control sphere.

AFFECTED SURFACEProduct not specified
CVSS 8.8EPSS 0.22%
CVE-2026-17646HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote authenticated attacker to obtain sensitive information due to improper restriction of XML external entity references.

AFFECTED SURFACEProduct not specified
CVSS 8.5EPSS 0.29%
CVE-2026-17645CRITICAL

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote authenticated attacker to gain elevated privileges due to improper privilege management.

AFFECTED SURFACEProduct not specified
CVSS 9.1EPSS 0.38%
CVE-2026-17644HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a local attacker to gain unauthorized access to sensitive information and modify transaction data due to the use of hard-coded credentials.

AFFECTED SURFACEProduct not specified
CVSS 8.8EPSS 0.10%
CVE-2026-17643HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a local attacker to obtain sensitive information and perform unauthorized actions due to insufficiently protected credentials.

AFFECTED SURFACEProduct not specified
CVSS 8.8EPSS 0.10%
CVE-2026-17637HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow an adjacent-network attacker to execute arbitrary code due to deserialization of untrusted data.

AFFECTED SURFACEProduct not specified
CVSS 8.8EPSS 0.24%
CVE-2026-17636HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote authenticated attacker to execute arbitrary code due to improper validation of a specified quantity.

AFFECTED SURFACEProduct not specified
CVSS 8.8EPSS 0.50%
CVE-2026-17635CRITICAL

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to perform unauthorized actions due to improper configuration of HTTP method-based security constraints.

AFFECTED SURFACEProduct not specified
CVSS 9.1EPSS 0.35%
CVE-2026-17620MEDIUM

IBM Financial Transaction Manager (FTM) for RedHat OpenShift 4.0.6.0 through 4.0.6.0.0.6.0 Refresh (Operator 4.4.6+20260807.081800)4.0.7.04.0.8.04.0.9.04.0.10.0 Interim Fix 064 IBM Financial Transaction Manager transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.

AFFECTED SURFACEProduct not specified
CVSS 5.3EPSS 0.13%
CVE-2026-17618HIGH

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote unauthenticated attacker to view and modify sensitive information and cause a denial of service due to improper authorization.

AFFECTED SURFACEProduct not specified
CVSS 7.3EPSS 0.22%
CVE-2026-17472CRITICAL

IBM Concert 1.0.0 through 3.0.0 could allow a remote authenticated attacker to access or modify unauthorized resources due to the use of wildcards in RBAC permission definitions.

AFFECTED SURFACEProduct not specified
CVSS 9.6EPSS 0.30%
CVE-2026-17465MEDIUM

IBM Concert 1.0.0 through 3.0.0 could allow a remote authenticated attacker to cause a denial of service due to improper enforcement of storage limits.

AFFECTED SURFACEProduct not specified
CVSS 6.5EPSS 0.28%
CVE-2026-17102HIGH

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.

AFFECTED SURFACEibm datastage on cloud pak for data
CVSS 8.8EPSS 0.58%
CVE-2026-16672HIGH

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of special elements used in an OS command.

AFFECTED SURFACEibm datastage on cloud pak for data
CVSS 8.8EPSS 0.55%
CVE-2026-16469HIGH

IBM DataStage on Cloud Pak for Data 5.4.0.0 px-runtime could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.

AFFECTED SURFACEibm datastage on cloud pak for data
CVSS 8.8EPSS 0.96%
CVE-2026-16468HIGH

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to OS command injection.

AFFECTED SURFACEibm datastage on cloud pak for data
CVSS 8.8EPSS 1.71%
CVE-2026-16426MEDIUM

IBM Concert 1.0.0 through 3.0.0 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.

AFFECTED SURFACEProduct not specified
CVSS 6.5EPSS 0.19%
CVE-2026-16346CRITICAL

IBM DataStage on Cloud Pak for Data 5.4.0.0 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.

AFFECTED SURFACEProduct not specified
CVSS 9.9EPSS 0.45%
CVE-2026-15915MEDIUM

IBM Concert 1.0.0 through 3.0.0 could allow a local attacker to obtain sensitive information due to recursive copying of build context directories into container images.

AFFECTED SURFACEProduct not specified
CVSS 6.2EPSS 0.12%
CVE-2025-36084MEDIUM

IBM Concert 1.0.0 through 3.0.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.

AFFECTED SURFACEProduct not specified
CVSS 5.9EPSS 0.16%
CVE-2025-12767MEDIUM

IBM Concert 1.0.0 through 3.0.0 could allow a remote attacker to cause a denial of service using a specially crafted regular expression that would cause excessive resource consumption.

AFFECTED SURFACEProduct not specified
CVSS 5.3EPSS 0.36%
CVE-2026-96269HIGH

GNU Emacs 28.1 through 31.1 allows arbitrary code execution upon opening a file, because an untrusted value of read-symbol-shorthands affects the intern and unintern functions. This affects the default configuration; no particular user settings are required to trigger it.

AFFECTED SURFACEProduct not specified
CVSS 7.5EPSS 0.15%
CVE-2026-96260MEDIUM

Mattermost versions 11.9.x <= 11.9.1, 11.8.x <= 11.8.5, 11.7.x <= 11.7.10, 11.10.x <= 11.10.1 fail to enforce a request body size limit during CSRF validation of plugin requests which allows an authenticated user to exhaust server memory and cause a denial of service via a large request body sent to a plugin endpoint.. Mattermost Advisory ID: MMSA-2026-00775

AFFECTED SURFACEProduct not specified
CVSS 6.5EPSS 0.41%