19 vulnerabilities across 15 products scored HIGH or above on August 17, 2026.

  • πŸ”΄ CRITICAL: 2
  • 🟠 HIGH: 17

Exploit Status Upgrades

The following CVEs from previous bulletins have been upgraded based on new exploit intelligence:

  • [UPGRADED] CVE-2026-17083 (ibm/i) β€” F1: exploitable β†’ functional, AAS: 10.9 β†’ 12.9 (HIGH β†’ CRITICAL). Originally in 2026-08-12 bulletin.
  • [UPGRADED] CVE-2026-72886 (dokploy/dokploy) β€” F1: exploitable β†’ functional, AAS: 10.1 β†’ 12.1 (HIGH β†’ CRITICAL). Originally in 2026-08-10 bulletin.
  • [UPGRADED] CVE-2026-72882 (dokploy/dokploy) β€” F1: exploitable β†’ functional, AAS: 10.1 β†’ 12.1 (HIGH β†’ CRITICAL). Originally in 2026-08-10 bulletin.
  • [UPGRADED] CVE-2026-72901 (dokploy/dokploy) β€” F1: exploitable β†’ functional, AAS: 10.1 β†’ 12.1 (HIGH β†’ CRITICAL). Originally in 2026-08-10 bulletin.
  • [UPGRADED] CVE-2026-72737 (dokploy/dokploy) β€” F1: exploitable β†’ functional, AAS: 9.7 β†’ 11.7 (HIGH β†’ HIGH). Originally in 2026-08-10 bulletin.

πŸ”΄ [CRITICAL] patriksimek/vm2

2 CVEs | CVSS 3.1: 9.9 | AAS 12.8

  • cpe:2.3:a:patriksimek:vm2:*:*:*:*:*:*:*:* (< 3.9.16)

Two critical vulnerabilities have been disclosed in patriksimek’s vm2 JavaScript sandbox library, including at least one sandbox escape that allows attackers to break out of the VM2 isolation boundary and execute arbitrary commands on the host system. With a CVSS score of 9.9 and known exploit techniques publicly available, these flaws pose an immediate risk to any application relying on vm2 to safely execute untrusted code.

Security teams running vm2 in any capacity should treat this as an urgent priority. Given that vm2 has been deprecated by its maintainer, organizations should migrate to actively maintained alternatives such as isolated-vm or similar sandboxing solutions as soon as possible. Review vendor advisories for full details and confirm no untrusted code execution paths depend on vm2 in your environment.

Vendor Advisory


🟠 [HIGH] gitlab/gitlab

1 CVE | CVSS 3.1: 9.4 | AAS 11.6

  • cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:* (>= 18.2, < 18.11.11)
  • cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:* (>= 19.0, < 19.0.8)
  • cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:* (>= 19.1, < 19.1.6)
  • cpe:2.3:a:gitlab:gitlab:*:*:*:*:*:*:*:* (>= 19.2, < 19.2.4)

A critical vulnerability in GitLab CE/EE allows unauthenticated attackers to remotely modify or delete public projects and user data by exploiting a flaw in GraphQL directive handling. Rated CVSS 9.4, this issue affects all versions from 18.2 through 19.2 and poses a serious risk to any internet-facing GitLab instance, particularly those hosting public repositories.

Organizations running GitLab should upgrade immediately to versions 18.11.11, 19.0.8, 19.1.6, or 19.2.4 as outlined in the vendor’s patch release advisory. Until patching is complete, teams should audit recent project and user data changes for signs of unauthorized modification.

Vendor Advisory


🟠 [HIGH] jetbrains/youtrack

2 CVEs | CVSS 3.1: 9.1 | AAS 10.7

  • cpe:2.3:a:jetbrains:youtrack:*:*:*:*:*:*:*:*

Two high-severity vulnerabilities have been disclosed in JetBrains YouTrack, including at least one that allows unauthenticated attackers to download database backups by abusing shared draft signatures. Rated up to CVSS 9.1, these flaws could expose sensitive project data, user credentials, and internal issue tracking content to external attackers without requiring any authentication.

Organizations running YouTrack should upgrade immediately to versions 2025.3.156085, 2026.1.13913, or 2026.2.18112 or later, and review backup access logs for any signs of unauthorized downloads. Refer to the JetBrains security advisory for full details on both issues.

Vendor Advisory


🟠 [HIGH] andialbrecht/sqlparse

2 CVEs | CVSS 4.0: 8.7 | AAS 10.6

  • cpe:2.3:a:andialbrecht:sqlparse:*:*:*:*:*:*:*:* (< 0.6.0)

Two high-severity vulnerabilities have been disclosed in sqlparse, the widely used Python SQL parsing library, including at least one that enables denial of service through quadratic CPU consumption when processing crafted comment-only SQL statements. Rated up to CVSS 8.7, these flaws are particularly concerning given sqlparse’s extensive use as a dependency in frameworks such as Django, Apache Superset, and numerous database management tools.

Teams should upgrade sqlparse to version 0.6.0 or later to remediate both issues, and audit dependency trees to identify any indirect exposure through downstream packages that bundle sqlparse.

Vendor Advisory


🟠 [HIGH] discourse/discourse

1 CVE | CVSS 3.1: 9.3 | AAS 10.3

  • cpe:2.3:a:discourse:discourse:*:*:*:*:*:*:*:* (< 2026.1.6)
  • cpe:2.3:a:discourse:discourse:*:*:*:*:*:*:*:* (>= 2026.5.0, < 2026.5.2)
  • cpe:2.3:a:discourse:discourse:*:*:*:*:*:*:*:* (>= 2026.6.0, < 2026.6.1)

A critical vulnerability in the Discourse open-source discussion platform allows unauthenticated attackers to achieve cross-site scripting via a crafted cookie value that injects arbitrary HTML into page output, bypassing Discourse’s nonce-based Content Security Policy. Rated CVSS 9.3, this flaw requires only a single unauthenticated request to exploit and could be used to hijack user sessions, steal credentials, or deliver malicious content to forum visitors.

Administrators running self-hosted Discourse instances should upgrade immediately to versions 2026.1.6, 2026.5.2, 2026.6.1, or 2026.7.0 or later, and review access logs for suspicious cookie-based injection attempts targeting color_scheme_id or dark_scheme_id parameters.

Vendor Advisory


🟠 [HIGH] hp_inc./web_jetadmin

1 CVE | CVSS 4.0: 8.9 | AAS 10.2

  • cpe:2.3:a:hp:web_jetadmin:*:*:*:*:*:*:*:*

A high-severity vulnerability in HP Web Jetadmin, widely used for centralized printer and device fleet management, could allow an unauthenticated attacker to read from or write to arbitrary files on the host system through a DLL hijacking mechanism. Rated CVSS 8.9, this flaw is particularly concerning in enterprise environments where Web Jetadmin servers often run with elevated privileges and have broad network access to managed devices.

Administrators should consult HP’s security bulletin and apply the recommended update promptly, and review Web Jetadmin server file system integrity for any signs of unauthorized DLL placement or unexpected file modifications.

Vendor Advisory


🟠 [HIGH] quantumnous/new-api

1 CVE | CVSS 3.1: 9.1 | AAS 10.0

  • cpe:2.3:a:quantumnous:new-api:*:*:*:*:*:*:*:*

A critical vulnerability in QuantumNous New API, an LLM gateway and AI asset management system, allows low-privileged users to exploit integer overflow flaws in quota and billing calculations to convert negative charges into account credits, potentially enabling unlimited free consumption of AI resources. Rated CVSS 9.1, the flaw exists across multiple user-controlled parameters including token limits, audio duration, and billing expressions in the quota settlement paths.

Organizations running New API should upgrade to version 1.0.0-rc.18 or later immediately, and audit account balances and billing records for anomalous credit additions or usage patterns that may indicate prior exploitation.

Vendor Advisory


🟠 [HIGH] stirling-tools/stirling-pdf

2 CVEs | CVSS 3.1: 8.5 | AAS 9.9

  • cpe:2.3:a:stirling-tools:stirling-pdf:*:*:*:*:*:*:*:* (< 2.9.0)

Two high-severity vulnerabilities have been disclosed in Stirling-PDF, a popular self-hosted web application for PDF processing, including at least one stored cross-site scripting flaw that allows a malicious PDF to execute arbitrary JavaScript when a user inspects its metadata through the Get Info workflow. Rated up to CVSS 8.5, these issues are especially relevant for organizations where Stirling-PDF instances are shared among multiple users or process externally sourced documents, as a crafted PDF could hijack browser sessions or modify page content.

Administrators should upgrade to Stirling-PDF version 2.0.0 or later to remediate both issues, and advise users to exercise caution when processing PDF files from untrusted sources until the update is applied.

Vendor Advisory


🟠 [HIGH] roundcube/webmail

1 CVE | CVSS 3.1: 8.8 | AAS 9.9

  • cpe:2.3:a:roundcube:webmail:*:*:*:*:*:*:*:*

A high-severity remote code execution vulnerability in Roundcube Webmail allows attackers to execute arbitrary commands on the server through crafted placeholder replacement values in the markasjunk plugin’s cmd_learn driver. Rated CVSS 8.8, this flaw is particularly concerning given Roundcube’s history as a target for advanced threat actors and its widespread deployment across hosting providers, enterprises, and government mail infrastructure.

Administrators running Roundcube with the markasjunk plugin enabled should upgrade immediately to version 1.6.18 or 1.7.3 or later. Instances not using the markasjunk plugin or its cmd_learn driver are not affected, but upgrading is still recommended as a defense-in-depth measure.

Vendor Advisory


🟠 [HIGH] zephyrproject/zephyr

1 CVE | CVSS 3.1: 8.8 | AAS 9.6

  • cpe:2.3:a:zephyrproject:zephyr:*:*:*:*:*:*:*:*

A high-severity vulnerability in the Zephyr RTOS allows user-mode applications to bypass the kernel trust boundary by passing unvalidated device pointers through the flash_copy() system call, potentially enabling arbitrary kernel memory access or code execution on builds with CONFIG_USERSPACE enabled. Rated CVSS 8.8, this flaw is critical for any embedded or IoT deployment relying on Zephyr’s userspace isolation as a security boundary.

Teams developing or deploying firmware on Zephyr should apply the upstream fix immediately and review any devices in the field running userspace-enabled builds for exposure. Products not using CONFIG_USERSPACE are unaffected but should still incorporate the patch in their next firmware update cycle.

Vendor Advisory


🟠 [HIGH] notepad-plus-plus/notepad-plus-plus

1 CVE | CVSS 3.1: 8.1 | AAS 9.4

  • cpe:2.3:a:notepad-plus-plus:notepad:*:*:*:*:*:*:*:* (< 8.9.7)

A high-severity path traversal vulnerability in Notepad++ allows a crafted ZIP file processed by the WinGup updater to overwrite plugin DLLs via directory traversal in archive entry names, resulting in arbitrary code execution the next time Notepad++ loads the affected plugin. Rated CVSS 8.1, this flaw is particularly relevant for enterprise environments where Notepad++ is widely deployed as a standard developer and administrator tool, as a malicious update package could compromise any workstation running a vulnerable version.

Users and IT teams should upgrade to Notepad++ version 8.9.7 or later immediately, and consider verifying the integrity of existing plugin directories for any unexpected DLL modifications, especially on systems where automatic updates may have been intercepted or redirected.

Vendor Advisory


🟠 [HIGH] jetbrains/pycharm

1 CVE | CVSS 3.1: 8.4 | AAS 9.1

  • cpe:2.3:a:jetbrains:pycharm:*:*:*:*:*:*:*:* (< 2026.2.1)

A high-severity vulnerability in JetBrains PyCharm allows unauthenticated code execution through exposed Jupyter MCP tools, meaning an attacker with network access to a developer’s PyCharm instance could execute arbitrary code without credentials. Rated CVSS 8.4, this flaw is a significant risk for development teams, particularly in environments where PyCharm workstations are accessible on shared or insufficiently segmented networks.

Developers and IT teams should upgrade to PyCharm 2026.2.1 or later immediately, and review network access controls around development workstations to ensure Jupyter-related services are not exposed beyond trusted boundaries.

Vendor Advisory


🟠 [HIGH] netty/netty

1 CVE | CVSS 3.1: 7.5 | AAS 9.1

  • cpe:2.3:a:netty:netty:*:*:*:*:*:*:*:* (< 4.1.137.Final)
  • cpe:2.3:a:netty:netty:*:*:*:*:*:*:*:* (>= 4.2.0.Final, < 4.2.17.Final)

A high-severity denial-of-service vulnerability in Netty allows unauthenticated peers to exhaust server memory by sending oversized SCTP fragments, as the SctpMessageCompletionHandler fails to enforce a maximum buffered byte limit despite restricting message and fragment counts. Rated CVSS 7.5, this flaw is broadly impactful given Netty’s extensive use as a foundational networking library across Java-based enterprise applications, microservices frameworks, and cloud infrastructure platforms.

Teams should upgrade to Netty 4.1.137.Final or 4.2.17.Final or later, and audit dependency trees for indirect Netty usage in frameworks such as Spring, gRPC, and Elasticsearch that may bundle vulnerable versions.

Vendor Advisory


🟠 [HIGH] nicolargo/glances

1 CVE | CVSS 3.1: 8.8 | AAS 9.1

  • cpe:2.3:a:nicolargo:glances:*:*:*:*:*:*:*:*

A high-severity command injection vulnerability in Glances, a popular cross-platform system monitoring tool, allows attackers to achieve code execution by crafting process command-line values containing pipe characters that bypass input sanitization and are passed through to shell execution via administrator-configured action templates. Rated CVSS 8.8, this flaw affects versions 4.5.2 through 4.5.5 and is particularly concerning on monitoring servers that use Glances action templates to automate responses to system events.

Administrators should upgrade to Glances 4.5.6 or later immediately, and review any configured action templates for exposure to unsanitized process metadata, especially in environments where untrusted users or workloads can influence running process names or arguments.

Vendor Advisory


🟠 [HIGH] notepad-plus-plus/notepad

1 CVE | CVSS 3.1: 7.8 | AAS 9.1

  • cpe:2.3:a:notepad-plus-plus:notepad:*:*:*:*:*:*:*:* (< 8.9.7)

A high-severity stack buffer overflow vulnerability in Notepad++ allows attackers to corrupt stack memory and potentially execute arbitrary code by supplying an oversized variable name through the Run dialog’s environment string expansion function. Rated CVSS 7.8, this flaw can be triggered through crafted input that exceeds the fixed-size stack buffer, posing a risk to developer and administrator workstations where Notepad++ is commonly deployed.

Users and IT teams should upgrade to Notepad++ version 8.9.7 or later to remediate this issue. Organizations managing Notepad++ deployments across fleets should prioritize this update alongside the related path traversal fix in the same release.

Vendor Advisory