PULSE
EN VIVO79señales / 24h
FEED
ransomorova reclama a Hilliard's Air Conditioning & Heating Inc · US · Professional Servicesransomorova reclama a Gemstone UK · US · Otherransomdragonforce reclama a EduSpa · Hospitalityransomcry0 reclama a Hope's Windows · US · Retail & E-Commerceransomdragonforce reclama a Primary Eye Care · US · Healthcareransomorova reclama a St Theresa Catholic Church · US · Otherransomorova reclama a Stoneybrook West Master Association, Inc · US · Otherransomorova reclama a Stonecrest POA · US · Otherransomqilin reclama a Bloom Financials · GB · Financial Servicesransomorova reclama a Magnolia Dental · US · Healthcareransomorova reclama a Country Oaks Veterinary Clinic · US · Healthcareransomorova reclama a David King Architect · US · Professional Servicesransomorova reclama a Woodside Ranch · US · Agriculture and Food Productionransombarracuda reclama a Ferrell \ Skyline Implants & Periodontics \ Dr. Scott Ferguson · Healthcareransomorova reclama a Hilliard's Air Conditioning & Heating Inc · US · Professional Servicesransomorova reclama a Gemstone UK · US · Otherransomdragonforce reclama a EduSpa · Hospitalityransomcry0 reclama a Hope's Windows · US · Retail & E-Commerceransomdragonforce reclama a Primary Eye Care · US · Healthcareransomorova reclama a St Theresa Catholic Church · US · Otherransomorova reclama a Stoneybrook West Master Association, Inc · US · Otherransomorova reclama a Stonecrest POA · US · Otherransomqilin reclama a Bloom Financials · GB · Financial Servicesransomorova reclama a Magnolia Dental · US · Healthcareransomorova reclama a Country Oaks Veterinary Clinic · US · Healthcareransomorova reclama a David King Architect · US · Professional Servicesransomorova reclama a Woodside Ranch · US · Agriculture and Food Productionransombarracuda reclama a Ferrell \ Skyline Implants & Periodontics \ Dr. Scott Ferguson · Healthcare
← Todos los CVEs
CVE Watch6 ago 2026

CVE-2026-18990

A vulnerability was detected in letta-ai LettaBot 0.2.0. Impacted is an unknown function of the file src/api/server.ts of the component API

CVSS

7.3

Alto

EPSS

KEV

Exploit Today

0-100

Publicado: 6 ago 2026 · Última mod.: 6 ago 2026 · CWE-287 · CWE-306

EPSS · 30d

Sin historial EPSS suficiente todavía.

Descripción técnica

A vulnerability was detected in letta-ai LettaBot 0.2.0. Impacted is an unknown function of the file src/api/server.ts of the component API Status Route. The manipulation results in missing authentication. The attack may be performed from remote. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Referencias oficiales
CVEs relacionados
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-713199.6 CRÍ
Nuxt is an open-source web development framework for Vue.js. Prior to 3.3.1, Nuxt DevTools (development mode only) exposes a bidirectional RPC channel over the Vite HMR WebSocket via the nuxt:devtools:rpc plugin. On affected versions the channel has no authentication: any client that can reach the Vite HMR endpoint (ws://<host>:<port>/, subprotocol vite-hmr) can call RPC methods, with no token, handshake, or origin check before the channel is established. The updateOptions(), clearOptions(), and openInEditor() methods do not enforce the ensureDevAuthToken check that the other mutating methods use. openInEditor() reads the persisted behavior.openInEditor value and passes it to the launch-editor package, which spawns it as a child process. That value is settable through the equally unauthenticated updateOptions(). An attacker who can reach the HMR port can therefore chain updateOptions('behavior', { openInEditor: '<command>' }) then openInEditor('<any-existing-file>') to execute an arbitrary program on the developer's machine. This issue is fixed in 3.3.1.13h
CVE-2026-691117.5 ALT
Milvus through 2.6.22 and 3.0.0 contains an unauthenticated denial of service vulnerability that allows remote attackers to terminate service components by sending a crafted HTTP GET request to the management server on port 9091. Attackers can exploit the unprotected /management/stop endpoint, which bypasses REST API authentication middleware, by supplying a 'role' parameter to shut down the proxy, datanode, or querynode components, resulting in denial of service.15h
CVE-2026-84467.5 ALT
IBM Langflow OSS 1.0.0 through 1.10.3 contain an authentication bypass vulnerability in the Model Context Protocol (MCP) composer endpoint when mcp_composer_enabled=true (default) and projects are configured with auth_type=oauth .17h
CVE-2026-91929.8 CRÍ
An authentication bypass vulnerability in the ODBC App Server of Progress MarkLogic Server before 11.3.6 and 12.0.3 allows an unauthenticated remote attacker to bypass password verification and execute queries with the privileges of any named user known to the server, including administrators.16h
CVE-2026-48911
Insufficient Verification of Data Authenticity vulnerability in Apache Answer. This issue affects Apache Answer: through 2.0.1. A missing authorization check in the external-login email binding flow allows unauthenticated attackers to take over arbitrary user accounts by tricking victims into clicking a crafted confirmation link. Users are recommended to upgrade to version 2.0.2, which fixes the issue.18h
CVE-2026-712899.8 CRÍ
The NASA-AMMOS Asynchronous Network Management System (ANMS) reference implementation's default docker-compose.yml publishes the amp-manager service's REST API directly to the host network interface (port 8089, e.g. "${ION_MGR_PORT:-8089}:8089/tcp") with cap_add: NET_ADMIN, NET_RAW, SYS_NICE, bypassing the CAM (Configuration and Access Manager) gateway that is otherwise the system's sole authentication boundary. The underlying REST server, implemented with CivetWeb in JHUAPL/dtnma-tools (src/refdm/nm_rest.c), is configured with enable_auth_domain_check set to "no" and registers every route, including the DTNMA agent command-dispatch endpoints (.../agents/{eid|idx}/send, which accept and forward EXECSET-encoded command sets to a registered DTNMA agent), with a null authentication callback. Any network-reachable client can therefore enumerate registered agents, submit arbitrary command sets to them, and clear stored reports, entirely without credentials. This affects NASA-AMMOS/anms and JHUAPL-DTNMA/dtnma-tools as published; both repositories present this as a reference/ground DTN network-management implementation and testbed, and the affected components communicate with DTNMA agents (which may represent simulated or real spacecraft/ground nodes depending on deployment) rather than being flight software running onboard a spacecraft.19h