VulncastBriefing archive

Daily Brief - 2026-09-05

· 5 vulnerabilities · 7 min listen

▶ Listen to this briefing

CVE-2026-5522

medium · CVSS 6.7 · IBM QRadar

IBM QRadar 7.5.0 through 7.5.0 UP15 Interim Fix 005 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.

  • Hard-coded Credentials
  • siem

CVE-2026-78327

critical · CVSS 9.1 · SonicWall Network Security Manager

An Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in the SonicWall Network Security Manager (NSM) On-Prem Management interface allows an authenticated attacker with SuperAdmin privileges to inject arbitrary commands that are executed on the underlying host, resulting in remote code execution.

  • OS Command Injection
  • Remote Code Execution
  • network management
  • firewall management

CVE-2026-80117

high · CVSS 7.1 · PassMark DirectIo64

PassMark PerformanceTest before 11.1 build 1012, BurnInTest before 11.1 build 1000, and OSForensics before 11.1 build 1016 contain a privilege escalation vulnerability in DirectIo64.sys that allows local users to issue arbitrary IN and OUT instructions to any x86 I/O port due to missing allowlist or port validation on exposed IOCTLs. Attackers can obtain a device handle and write to sensitive ports including the PS/2 controller port, CPU reset ports, CMOS configuration ports, and interrupt controller ports to cause an immediate system reset or other hardware-level manipulation from a standard user account.

  • Privilege Escalation
  • kernel driver

CVE-2026-85197

high · CVSS 7.6 · GNOME libsoup

A flaw was found in libsoup. A malicious HTTP/2 server or a Man-in-the-Middle (MITM) attacker can exploit a heap use-after-free vulnerability in the HTTP/2 client implementation. This occurs when a GNOME application uploads a file using HTTP/2, and the server sends a GOAWAY frame while the file body is being read asynchronously. This can lead to memory corruption, potentially resulting in information disclosure or arbitrary code execution.

  • Use-After-Free
  • Memory Corruption
  • Remote Code Execution
  • http client
  • library

CVE-2026-85781

high · CVSS 8.7 · Amazon EFS CSI Driver

Unverified ownership of a storage access point in the volume deletion component of the Amazon EFS CSI Driver before v3.4.1 might allow an authenticated Kubernetes user with PersistentVolume creation privileges to cause recursive deletion of directories on an EFS filesystem they are not authorized to access, via a crafted PersistentVolume volumeHandle that pairs an access point from one filesystem with a different target filesystem. To remediate this issue, users should upgrade to version v3.4.1.

  • Improper Authorization
  • kubernetes
  • storage