π Security Pulse Β· 2026-09-21 16:00 UTC
β‘ TL;DR
Multiple critical vulnerabilities detected in widely used enterprise and networking systems, including Frappe ERPNext and Netcore routers, posing significant risk of data leakage and remote code execution. Overall threat level remains elevated due to known exploits and active surveillance.
π CYBER THREATS
- π΄π΄ CVE-2026-94113 affects Frappe ERPNext versions before 15.121.0 and 16.x before 16.34.0, allowing information disclosure via whitelisted timesheet endpoints improperly enforcing access controls, risking sensitive data exposure in enterprise environments [1].
- π΄ CVE-2026-90817 enables unauthenticated Remote Code Execution in survey passthrough routing and Data Import logic, potentially allowing full system compromise if exploited [2].
- π΄ Multiple vulnerabilities (CVE-2026-94095 through CVE-2026-94100) in Netcore NBR200V2 firmware 1.3.241127.071246 affect network tools, CGI diagnostics, firmware upgrade processes, and VLAN configuration, exposing routers to remote manipulation and denial of service [3] [4] [5] [6] [7] [8].
- π΄ CVE-2026-92254 and related CVEs (92252, 92253) impact WatchDog Antivirus kernel drivers and quarantine processes, enabling local privilege escalation and arbitrary code execution on Windows hosts, weakening endpoint security [9] [10].
- π‘ CVE-2026-94015 and related vulnerabilities in SourceCodester Drug Recommendation System 1.0 compromise multiple admin functions, posing a risk to healthcare application data integrity and confidentiality.
- π‘ CVE-2026-94036 impacts D-Link DIR-X1860 routers enabling likely remote exploits through unknown functions, threatening home and small business network security.
π‘οΈ NATIONAL SECURITY
- π‘ CISA reminds critical infrastructure operators to invest in isolation and recovery capabilities ahead of a live event highlighting CI Fortify measures, signaling continued efforts to harden key sectors amid rising cyber threats.
β οΈ RISK FLAGS
- β οΈπ΄ Exploitation of Netcore NBR200V2 router vulnerabilities could allow attackers to control network infrastructure components, triggering cascading effects on enterprise and public networks [9-14].
- β οΈπ΄ Information disclosure via Frappe ERPNext critical vulnerability may lead to data leaks in government and commercial ERP deployments, requiring urgent patch application [1].
- β οΈ Local privilege escalation risks in WatchDog Antivirus driver vulnerabilities threaten endpoint defense layers, increasing exposure to advanced malware [9] [10].
π§ THREAT MOOD
- π‘ Elevated: Active discovery of critical vulnerabilities across multiple products with known remote attack vectors requires urgent patching and monitoring but no confirmed widespread exploits reported yet. Vigilance and rapid response remain imperative.
π Sources
- CVE-2026-94113 Frappe ERPNext versions before 15.121.0 and 16.β¦ β @CVEnew
- CVE-2026-90817 An unauthenticated Remote Code Execution vulnerβ¦ β @CVEnew
- CVE-2026-94095 A vulnerability has been found in Netcore NBR20β¦ β @CVEnew
- CVE-2026-94096 A vulnerability was found in Netcore NBR200V2 1β¦ β @CVEnew
- CVE-2026-94097 A vulnerability was determined in Netcore NBR20β¦ β @CVEnew
- CVE-2026-94098 A vulnerability was identified in Netcore NBR20β¦ β @CVEnew
- CVE-2026-94099 A security flaw has been discovered in Netcore β¦ β @CVEnew
- CVE-2026-94100 A weakness has been identified in Netcore NBR20β¦ β @CVEnew
- CVE-2026-92254 Missing Authorization in the IOCTL handlers of β¦ β @CVEnew
- CVE-2026-92252 Incorrect default permissions in the installatiβ¦ β @CVEnew
Educational & informational only β not financial advice. Markets carry risk; do your own research.
Serial 20260921-16-v77 Β· 2026-09-21 16:00 UTC Β· pulse.uzylab.com