CVE-2026-41709
VMware ESX contains an insufficient logging vulnerability. A malicious administrator could exploit this issue to perform certain operations
CVSS
2.7
Low
EPSS
0.4%
p34
KEV
—
Exploit Today
10
0-100
Published: Jul 30, 2026 · Last modified: Jul 30, 2026 · CWE-778
0.4%EPSS · 30 days0.4%
2026-08-162026-09-12
VMware ESX contains an insufficient logging vulnerability. A malicious administrator could exploit this issue to perform certain operations without them being logged.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-298124.3 MED—
———CyberPanel before 2.4.4 has no logging for actions that could potentially manipulate the child domains list.12hCVE-2026-668166.5 MED51.7%
——16Insufficient logging in SQL Server allows an authorized attacker to bypass a security feature over a network.6dCVE-2026-828633.3 LOW4.1%
——1@hulumi/baseline versions before 1.3.2 fail to fully detect CloudTrail selector tampering events, reducing audit logging configuration change coverage. Attackers can modify CloudTrail event selectors without complete detection, potentially evading audit trail monitoring.14dCVE-2020-372686.3 MED2.1%
——1Print Assumptions does not report that a definition was produced while universe checking was disabled when that definition reaches the caller through Parameter Inline in a module type. Applying a functor inlines the body of the parameter, and the inlining drops the record that the term was built under Unset Universe Checking, so the resulting constant carries no trace of the unsafe operation. A module implementation can therefore prove False using a universe inconsistency, expose it through an inlined parameter, and have Print Assumptions report the dependent proof as closed under the global context. Because Print Assumptions is the in-process audit used to confirm that a development rests on no unexpected assumptions, a dependency built this way passes that audit while proving arbitrary propositions. The standalone checker coqchk does reject the resulting compiled file. The project records this in dev/doc/critical-bugs.md under non-fixed bugs and rates the risk as moderate when coqchk is not used.6dCVE-2025-623075.4 MED8.0%
——2HCL IntelliOps Event Management (IEM) is affected by insufficient logging. Insufficient logging weakens accountability, obscures attack detection, and enables privilege probing.17dCVE-2026-762088.2 HIG22.3%
——7phpMyFAQ versions 3.1.0 through 4.1.6 contain an authentication bypass vulnerability in AuthLdap::create(). When LDAP authentication is enabled, after a successful LDAP bind the code calls User::setStatus('active') unconditionally, which overwrites the account_status column of a pre-existing local account from 'blocked' to 'active'. As a result, a user whose local phpMyFAQ account has been administratively blocked can restore their account and log in by authenticating via LDAP. The state transition is not logged, so administrators cannot detect that the block was overridden. Fixed in 4.1.7.13d