Critical Alert 7 Active Exploits Detected Today

CVE-2026-59822 BerriAI LiteLLM Improper Authentication Vulnerability →
CVE-2026-48710 Kludex Starlette HTTP Request/Response Smuggling Vulnerability →
CVE-2026-49869 Kestra OSS OS Command Injection Vulnerability →
CVE-2026-82329 JFrog Artifactory Improper Authentication Vulnerability →
CVE-2026-9586 Sangoma Switchvox SQL Injection Vulnerability →
CVE-2026-83548 SonicWall SMA1000 Appliances Server-Side Request Forgery Vulnerability →
CVE-2026-83549 SonicWall SMA1000 Appliances OS Command Injection Vulnerability →
Powered by CVE Watchtower
×
September 3, 2026

CVE Watchtower


← Back to CVE List

CVE-2026-53670NVD

Vulnerability Summary

PREVAIL is a Polynomial-Runtime EBPF Verifier using an Abstract Interpretation Layer. Prior to version 0.2.4, in the Prevail eBPF verifier, EbpfTransformer::add() silently skips offset-variable updates when the destination register carries a non-singleton typeset (two or more simultaneously possible pointer types). Subsequent bounds checks use the stale offset and accept out-of-bounds memory accesses, so a crafted BPF program passes verification even though it would corrupt memory at runtime. This issue has been patched in version 0.2.4.
Severity Level
CRITICAL(9.3)
Published Date
Sep 2, 2026
Last Modified
Sep 2, 2026
Exploitation Status
No confirmed exploitation yet
EPSS Score (30-Day)
Data Pending
Root Weakness (CWE)
N/A
CVSS v4.0 Base Metrics