← Back to the live CVE advisory feed

CVE-2026-81673: iSquad

Severity
9.3 (CRITICAL)
Vendor
TOOOLS
Affected versions
0 through before 22/07/2026
Patch status
Unknown
Published
2026-08-27T13:18:42.760
Modified
2026-08-27T17:20:56.363

Why it matters

Critical vulnerability requiring immediate validation against your environment.

Recommended admin actions

  • Prioritize validation immediately due to critical CVSS severity.
  • Compare installed versions against the affected version range in the advisory.
  • Treat internet-facing systems as higher priority.
  • Review logs for suspicious activity related to the affected application or component.

Technical summary

The ‘/ws/apitribuna/setVisita’ endpoint is vulnerable to SQL injection through the id_video and id_ambito parameters. The application does not validate or sanitize these inputs before including them in SQL queries. This allows a remote attacker to inject SQL syntax and disrupt the execution of queries, causing database errors and potentially manipulating visit tracking records. Given the nature of the endpoint, this could also affect the integrity of analytics and the accuracy of records.

CVE data is sourced from NVD/CNA records and optional enrichment. Validate against the vendor advisory before taking production action.

VULNERABILITY PULSE

LAST UPDATED: AUG 28, 2026 04:00 AM UTC
439 RECORDS
SECURE FEED ACTIVE
AFFECTED PRODUCT ACTION
CVE-2026-81735
UI-TARS-desktop PATCH
Reporter: DISCLOSURE
10
CRITICAL
VIEW RECORD
CVE-2026-18885
Product identification pending PATCH
Reporter: PSIRT
10
CRITICAL
VIEW RECORD
CVE-2026-18886
Product identification pending PATCH
Reporter: PSIRT
10
CRITICAL
VIEW RECORD
CVE-2026-74820
Product identification pending PATCH
Reporter: PSIRT
10
CRITICAL
VIEW RECORD
CVE-2026-47884
Spring Framework
Reporter: SECURITY
9.8
CRITICAL
VIEW RECORD
CVE-2026-47890
Spring Framework
Reporter: SECURITY
9.8
CRITICAL
VIEW RECORD
CVE-2026-47891
Spring Framework
Reporter: SECURITY
9.8
CRITICAL
VIEW RECORD
CVE-2026-32566
ACPT (Pro) – Custom Post Types Plugin for WordPress
Reporter: AUDIT
9.8
CRITICAL
VIEW RECORD
CVE-2026-78286
Geo Controller PATCH
Reporter: AUDIT
9.8
CRITICAL
VIEW RECORD
CVE-2026-78292
Hash Form PATCH
Reporter: AUDIT
9.8
CRITICAL
VIEW RECORD
CVE-2026-19092
Tutor LMS PATCH
Reporter: CONTACT
9.8
CRITICAL
VIEW RECORD
CVE-2026-77016
Workeera PATCH
Reporter: CONTACT
9.6
CRITICAL
VIEW RECORD
CVE-2026-59354
Spring Security (OAuth2 Authorization Server module) PATCH
Reporter: SECURITY
9.6
CRITICAL
VIEW RECORD
CVE-2026-59270
Spring Security
Reporter: SECURITY
9.4
CRITICAL
VIEW RECORD
CVE-2026-77991
JEM – Joomla Event Manager extension for Joomla
Reporter: SECURITY
9.4
CRITICAL
VIEW RECORD
CVE-2026-32479
Visitor Traffic Real Time Statistics Pro PATCH
Reporter: AUDIT
9.3
CRITICAL
VIEW RECORD
CVE-2026-78260
Epayco PATCH
Reporter: AUDIT
9.3
CRITICAL
VIEW RECORD
CVE-2026-78288
Beautiful Taxonomy Filters PATCH
Reporter: AUDIT
9.3
CRITICAL
VIEW RECORD
CVE-2026-74232
L3_V2_8
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-74233
WE1326
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-81672
iSquad
Reporter: CVE-COORDINATION
9.3
CRITICAL
VIEW RECORD
CVE-2026-81673
iSquad
Reporter: CVE-COORDINATION
9.3
CRITICAL
VIEW RECORD
CVE-2026-81674
iSquad
Reporter: CVE-COORDINATION
9.3
CRITICAL
VIEW RECORD
CVE-2026-81675
iSquad
Reporter: CVE-COORDINATION
9.3
CRITICAL
VIEW RECORD
CVE-2026-16279
Product identification pending
Reporter: 3DS.INFORMATION-SECURITY
9.3
CRITICAL
VIEW RECORD
CVE-2026-78251
Neo
Reporter: 5A6E4751-2F3F-4070-9419-94FB35B644E8
9.3
CRITICAL
VIEW RECORD
CVE-2026-81094
mcp-router PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-81096
ToolUniverse
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-81098
telnyx-mcp
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-81680
openssl_encrypt PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-81681
openssl_encrypt PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-81685
openssl_encrypt PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-81694
openssl_encrypt PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-81695
openssl_encrypt PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-81696
openssl_encrypt PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-81698
openssl_encrypt PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-81700
openssl_encrypt PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-81701
openssl_encrypt PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-81702
openssl_encrypt PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-81706
openssl_encrypt PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-81707
openssl_encrypt PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-81714
openssl_encrypt PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-81717
openssl_encrypt PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-81719
openssl_encrypt PATCH
Reporter: DISCLOSURE
9.3
CRITICAL
VIEW RECORD
CVE-2026-48996
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
9.3
CRITICAL
VIEW RECORD
CVE-2026-53578
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
9.3
CRITICAL
VIEW RECORD
CVE-2026-53579
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
9.3
CRITICAL
VIEW RECORD
CVE-2026-68929
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
9.3
CRITICAL
VIEW RECORD
CVE-2026-69658
Product identification pending
Reporter: ICS-CERT
9.3
CRITICAL
VIEW RECORD
CVE-2026-71187
Product identification pending
Reporter: ICS-CERT
9.3
CRITICAL
VIEW RECORD
CVE-2026-73125
Product identification pending
Reporter: ICS-CERT
9.3
CRITICAL
VIEW RECORD
CVE-2026-76179
Product identification pending
Reporter: ICS-CERT
9.3
CRITICAL
VIEW RECORD
CVE-2026-76943
Product identification pending
Reporter: ICS-CERT
9.3
CRITICAL
VIEW RECORD
CVE-2026-78239
Product identification pending
Reporter: ICS-CERT
9.3
CRITICAL
VIEW RECORD
CVE-2026-13086
Fireware OS
Reporter: 5D1C2695-1A31-4499-88AE-E847036FD7E3
9.3
CRITICAL
VIEW RECORD
CVE-2026-19313
Fireware OS
Reporter: 5D1C2695-1A31-4499-88AE-E847036FD7E3
9.3
CRITICAL
VIEW RECORD
CVE-2026-19315
Fireware OS
Reporter: 5D1C2695-1A31-4499-88AE-E847036FD7E3
9.3
CRITICAL
VIEW RECORD
CVE-2026-19318
Fireware OS
Reporter: 5D1C2695-1A31-4499-88AE-E847036FD7E3
9.3
CRITICAL
VIEW RECORD
CVE-2026-78174
Dimension
Reporter: 5D1C2695-1A31-4499-88AE-E847036FD7E3
9.3
CRITICAL
VIEW RECORD
CVE-2026-81934
Redis PATCH
Reporter: 9119A7D8-5EAB-497F-8521-727C672E3725
9.2
CRITICAL
VIEW RECORD
CVE-2026-78274
Fluent Boards Pro PATCH
Reporter: AUDIT
9.1
CRITICAL
VIEW RECORD
CVE-2026-57499
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
9.1
CRITICAL
VIEW RECORD
CVE-2026-81826
flowintel
Reporter: 5A6E4751-2F3F-4070-9419-94FB35B644E8
9.1
CRITICAL
VIEW RECORD
CVE-2026-18717
Product identification pending
Reporter: ICS-CERT
9.1
CRITICAL
VIEW RECORD
CVE-2026-50152
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
9.1
CRITICAL
VIEW RECORD
CVE-2026-61800
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
9.1
CRITICAL
VIEW RECORD
CVE-2025-30156
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.9
HIGH
VIEW RECORD
CVE-2026-5706
Product identification pending
Reporter: PRODUCT-SECURITY
8.9
HIGH
VIEW RECORD
CVE-2026-77018
Workeera PATCH
Reporter: CONTACT
8.8
HIGH
VIEW RECORD
CVE-2026-78333
12 Step Meeting List PATCH
Reporter: CONTACT
8.8
HIGH
VIEW RECORD
CVE-2026-78257
Booking and Rental Manager PATCH
Reporter: AUDIT
8.8
HIGH
VIEW RECORD
CVE-2026-81271
GeoDirectory PATCH
Reporter: AUDIT
8.8
HIGH
VIEW RECORD
CVE-2026-81579
Product identification pending PATCH
Reporter: 2FC02B1F-71E7-4514-A878-169626F68903
8.8
HIGH
VIEW RECORD
CVE-2026-81581
wibukey
Reporter: 2FC02B1F-71E7-4514-A878-169626F68903
8.8
HIGH
VIEW RECORD
CVE-2026-81676
iSquad
Reporter: CVE-COORDINATION
8.8
HIGH
VIEW RECORD
CVE-2026-81677
iSquad
Reporter: CVE-COORDINATION
8.8
HIGH
VIEW RECORD
CVE-2026-80208
apitable
Reporter: DISCLOSURE
8.8
HIGH
VIEW RECORD
CVE-2026-54721
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.8
HIGH
VIEW RECORD
CVE-2026-81730
Product identification pending
Reporter: DISCLOSURE
8.8
HIGH
VIEW RECORD
CVE-2026-39944
Product identification pending PATCH
Reporter: SECURITY-ADVISORIES
8.8
HIGH
VIEW RECORD
CVE-2026-75419
Product identification pending PATCH
Reporter: CVE
8.8
HIGH
VIEW RECORD
CVE-2026-75005
Product identification pending PATCH
Reporter: SECURITY
8.7
HIGH
VIEW RECORD
CVE-2026-81625
Product identification pending
Reporter: INFO
8.7
HIGH
VIEW RECORD
CVE-2026-79988
cms
Reporter: 7004884B-51E2-48E8-B4A2-5CA29E80453E
8.7
HIGH
VIEW RECORD
CVE-2026-81091
mcp-use
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-81093
actors-mcp-server
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-81335
Baserow
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-81687
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-81688
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-81689
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-81690
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-81691
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-81692
openssl_encrypt PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-81693
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-81697
openssl_encrypt PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-81699
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-81703
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-81704
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-81705
Product identification pending PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD
CVE-2026-81715
openssl_encrypt PATCH
Reporter: DISCLOSURE
8.7
HIGH
VIEW RECORD

About the Vulnerability Pulse CVE Feed

The Vulnerability Pulse feed tracks live CVE advisories sourced from the National Vulnerability Database and vendor security disclosures. It is designed for SOC analysts, IT administrators, and security teams who need a fast, filterable view of current vulnerabilities without digging through raw NVD data.

How to Use the CVE Advisory Tracker

Use the severity filters to narrow results to Critical or High priority vulnerabilities. Filter by vendor to focus on software and hardware relevant to your environment. Export to CSV for reporting, ticketing, or patch prioritization workflows.

What Is a CVE Advisory?

A CVE (Common Vulnerabilities and Exposures) advisory is a public disclosure of a security vulnerability assigned a unique identifier by MITRE. Advisories include severity scores (CVSS), affected versions, and remediation guidance. Monitoring CVE advisories is a core function of vulnerability management programs and SOC operations.

CVE Analysis & Writeups

For in-depth analysis of specific vulnerabilities, visit the IT Knowledge Bases blog for CVE breakdowns, exploitation analysis, and remediation guidance written for security practitioners.