<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Windows PowerShell</title>
  <link>https://cvedaily.com/pages/tags/windows-powershell.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/windows-powershell.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Windows PowerShell</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:27:01 +0000</lastBuildDate>
  <item>
    <title>[Medium] CVE-2026-24414 – The Icinga PowerShell Framework provides configuration and check possibilities t...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24414</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24414</guid>
    <pubDate>Thu, 29 Jan 2026 18:16:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-24414</strong></p>
  <p>The Icinga PowerShell Framework provides configuration and check possibilities to ensure integration and monitoring of Windows environments. In versions prior to 1.13.4, 1.12.4, and 1.11.2, permissions of the Icinga for Windows `certificate` directory grant every user read access, which results in the exposure of private key of the Icinga certificate for the given host. All installations are affe…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-276</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24414">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Medium] CVE-2026-24413 – Icinga 2 is an open source monitoring system. Starting in version 2.3.0 and prio...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2026-24413</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2026-24413</guid>
    <pubDate>Thu, 29 Jan 2026 18:16:15 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk medium">Medium</span> CVE-2026-24413</strong></p>
  <p>Icinga 2 is an open source monitoring system. Starting in version 2.3.0 and prior to versions 2.13.14, 2.14.8, and 2.15.2, the Icinga 2 MSI did not set appropriate permissions for the `%ProgramData%\icinga2\var` folder on Windows. This resulted in the its contents - including the private key of the user and synced configuration - being readable by all local users. All installations on Windows are…</p>
  <p><strong>CVSS:</strong> 5.5 · <strong>CWE:</strong> CWE-276</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2026-24413">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
