CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

● Daily security briefing

Saturday, August 29, 2026

CERT and PSIRT advisories were quiet on August 29th with no new publications, leaving the day's activity dominated by 63 published CVEs including eight critical findings. The most severe issues span multiple domains: CVE-2026-82456 in argocd-mcp 0.8.0 exposes network services to unauthenticated access, CVE-2026-82460 affects Cloud Commander with directory traversal, CVE-2026-15369 and CVE-2026-14494 target WordPress plugins with privilege escalation and remote code execution respectively, while CVE-2026-82452, CVE-2026-82448, and CVE-2026-82454 disclose authentication bypasses in rust-iot-platform, Shinobi, and the Omnivore API. Additionally, CVE-2026-82447 describes a sandbox escape in Skyvern before version 1.0.45.

Last updated 22:42 UTC

CERT / PSIRT advisories
0
CVEs published
63
Added to KEV
0
Known exploited
0

7 critical5 highacross the day’s notable advisories and CVEs

Notable CVEs

Highest-severity CVEs published this day from the NVD and GitHub Advisory firehose — the sharpest items behind the day’s numbers.

Get this briefing by email. One free message every morning after 06:00 UTC — same data, zero noise, one-click unsubscribe. Subscribe. Tracking specific products instead? Watch them from any product page and get alerted only when they ship a new advisory.