ZeroHour

Vulnerabilities

8 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2026-39951
+3 in the same advisory: …40079 …40083 …40941
Cacti is an open source performance and fault management framework.

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have a Stored SQL Injection vulnerability through graph_name_regexp in the Reports feature. This issue has been fixed in version 1.2.31.

NVD description · AI analysis pending
8.8
group max
<1%
  • cacti cacti
CVE-2026-39938
+3 in the same advisory: …39893 …39955 …39948
Cacti is an open source performance and fault management framework.

Cacti is an open source performance and fault management framework. Versions 1.2.30 and prior have unauthenticated LFI through graph_theme and rrdtool IPC serialization hardening. This issue has been resolved in version 1.2.31.

NVD description · AI analysis pending
9.8
group max
<1%
  • cacti cacti