Vulnerebility List - 2026 2025 2024 2023 2021 2020 2019 2018
H AI APT Attack BigBrothers BotNet Congress Cryptocurrency Cyber CyberCrime Exploit Hack ICS Incindent IoT Mobil OS Phishing Ransom Safety Security Social Spam Virus Vulnerebility | 2026 2025 2024 2023
DATE | NAME |
Info | CATEG. |
WEB |
|
15.9.26 |
LiteSpeed Enterprise Flaw Could Let One Hosting Account Gain Root Access on a Shared Server | A critical vulnerability in LiteSpeed Web Server Enterprise could let a low-privilege website user gain root access on a shared-hosting server, cPanel | Vulnerebility | The Hacker News |
|
13.9.26 |
GitLab urges users to patch max severity path traversal flaw | GitLab urged users on Thursday to patch their servers immediately against a maximum-severity path traversal vulnerability tracked as CVE-2026-85706. | Vulnerebility | BleepingComputer |
|
13.9.26 |
Cisco confirms CVE-2026-20079 Secure FMC flaw exploited in attacks | Cisco has confirmed that a maximum-severity authentication bypass vulnerability tracked as CVE-2026-20079 in its Secure Firewall Management Center (FMC) software is being actively exploited in attacks. | Vulnerebility | BleepingComputer |
|
13.9.26 |
Over 36,000 exposed Plex servers vulnerable to recent flaws | Over 36,000 Plex Media servers exposed online remain unpatched against multiple security vulnerabilities and are vulnerable to attacks. | Vulnerebility | BleepingComputer |
|
12.9.26 |
SAP warns of maximum severity 'OVERPASS' kernel vulnerability | SAP has addressed 20 vulnerabilities across multiple products in its September 2026 security updates, including a maximum-severity memory corruption flaw in the SAP Kernel code. | Vulnerebility | BleepingComputer |
|
12.9.26 |
Adobe fixes critical Magento zero-day exploited to backdoor servers | Adobe has released an emergency fix for CVE-2026-75650, an actively exploited max-severity zero-day vulnerability dubbed StyleSmuggler, that impacts multiple versions of Magento and Adobe Commerce. | Vulnerebility | BleepingComputer |
|
12.9.26 |
GitLab CVSS 10 File-Read Flaw Draws In-the-Wild Probes After Disclosure | GitLab has released patches to address multiple flaws, including a maximum-severity security vulnerability that has witnessed in-the-wild | Vulnerebility | The Hacker News |
|
11.9.26 |
ConnectWise warns of new ScreenConnect flaw without patch | ConnectWise has shared temporary mitigation measures for a new ScreenConnect Remote Access vulnerability that it plans to patch later this week. | Vulnerebility | BleepingComputer |
|
9.9.26 |
Alby Hub Critical Flaw Could Let Attackers Take Over Internet-Exposed Bitcoin Wallets | Bitcoin wallet company Alby has warned of a critical flaw in Alby Hub that could have let an attacker take over a wallet and send its funds, but only | Vulnerebility | The Hacker News |
|
9.9.26 |
Chrome V8 Zero-Day Exploited in the Wild Enables Code Execution Inside Sandbox | Google on Thursday released updates to patch 230 security vulnerabilities, including one that has come under active exploitation in the wild. The medium-severity vulnerability, assigned the CVE identifier CVE-2026-87491 | Vulnerebility | The Hacker News |
|
9.9.26 |
New cPanel Flaw Lets a Hosting Account With Mail Privileges Run Code as Root | cPanel has patched a flaw that it says lets a single hosting account take control of an entire server. An authenticated account holder with mail-related privileges can create files of their choosing on the server through EmailTrack and, from there, run code as the root user. cPanel published the advisory on September 8 and says every supported version of cPanel and WHM is affected. | Vulnerebility | The Hacker News |
|
9.9.26 |
Researcher Drops New Microsoft Defender PoC Showing ShieldBreak Patch Can Be Bypassed | The security researcher known as Chaotic Eclipse has dropped a proof-of-concept (PoC) for yet another zero-day in Microsoft Defender. The vulnerability, codenamed ShieldCrash , is assessed to be a patch bypass | Vulnerebility | The Hacker News |
|
9.9.26 |
SAP Patches CVSS 10.0 Kernel Flaw Enabling Unauthenticated Remote Code Execution | SAP has released security updates to address multiple vulnerabilities, including a maximum-severity flaw in SAP Extended Passport (EPP) Processing that could have a severe impact on the confidentiality, integrity, and availability of the application The vulnerability, tracked as CVE-2026-44756 (CVSS score: 10.0), has been described as a case of memory corruption. | Vulnerebility | The Hacker News |
|
9.9.26 |
Microsoft Patches Record 974 Flaws, Including Two Exploited Windows Zero-Days | Microsoft on Tuesday broke Patch Tuesday records by addressing an earth-shattering 974 vulnerabilities spanning its software portfolio, | Vulnerebility | The Hacker News |
|
9.9.26 |
N-able N-central Pre-Auth RCE Flaw Exploited in the Wild | The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a maximum-severity security flaw impacting N-able N-central to its Known Exploited Vulnerabilities ( KEV ) catalog, requiring | Vulnerebility | The Hacker News |
|
8.9.26 |
FreeIPA Flaw Chain Lets Anonymous Clients Create Reusable Administrator Credentials | A flaw in FreeIPA lets a client that has never logged in create a Kerberos identity of its own choosing in the directory and end up in the | Vulnerebility | The Hacker News |
|
7.9.26 |
Telerik UI Padding-Oracle Bug Chained to Unauthenticated RCE — Public Exploit Released | A TantoSec proof-of-concept turns an AES-CBC "padding oracle" in Telerik UI for ASP.NET AJAX into unauthenticated remote code execution — but only against applications in a specific non-default configuration, and | Vulnerebility | The Hacker News |
|
7.9.26 |
N-able Issues Fourth N-central Hotfix in Five Weeks for Unauthenticated RCE Flaw | Every on-premises N-central build below 2026.3.1.14 — including servers updated to Hotfix 3 a day earlier — needs Hotfix 4. N-able's incident notice | Vulnerebility | The Hacker News |
|
7.9.26 |
N-able patches max severity N-central flaw amid ongoing attacks | N-able has released an emergency hotfix for a maximum-severity remote code execution (RCE) flaw affecting its N-central remote monitoring and management (RMM) platform. | Vulnerebility | BleepingComputer |
|
6.9.26 |
Critical Citrix NetScaler auth bypass now leveraged in attacks | Attackers have begun targeting a critical-severity Citrix NetScaler auth bypass flaw (CVE-2026-19490) in the wild, according to vulnerability intelligence company Previdian. | Vulnerebility | BleepingComputer |
|
6.9.26 |
HPE patches critical ArubaOS-CX remote code execution flaw | Hewlett Packard Enterprise (HPE) has patched a critical vulnerability in the ArubaOS-CX network operating system that could lead to remote code execution. | Vulnerebility | BleepingComputer |
|
6.9.26 |
Critical Elementor Pro flaw exploited to take over WordPress sites | A recently patched critical vulnerability (CVE-2026-32475) in the Elementor Pro plugin for WordPress is being exploited in attacks that deliver a webshell payload and execute arbitrary commands on the server. | Vulnerebility | BleepingComputer |
|
6.9.26 |
Plex warns users to patch security vulnerabilities immediately | Plex urged users this week to update their desktop clients and media servers immediately to patch multiple security vulnerabilities. | Vulnerebility | BleepingComputer |
|
5.9.26 |
Attackers Breached JetBrains Cadence via Unpatched TeamCity, Extracting AWS Credentials | JetBrains is urging Cadence users to revoke and rotate all credentials following a security incident last month in which unidentified threat actors | Vulnerebility | The Hacker News |
|
5.9.26 |
Critical VMware Workstation and Fusion Flaw Lets VM Admins Execute Host Code | Broadcom has released security updates for two security flaws impacting VMware Workstation and Fusion, including one critical bug that could | Vulnerebility | The Hacker News |
|
5.9.26 |
Attackers Exploit PaperCut Flaws to Steal Credentials From Schools and Universities | Threat actors are exploiting the newly disclosed PaperCut flaws to facilitate credential theft in attacks targeting the education sector in the | Vulnerebility | The Hacker News |
|
4.9.26 |
PostgreSQL Fixes 12-Year-Old Logical Decoding Flaw Enabling Replication-Role Code Execution | PostgreSQL has released updates to address a security flaw that allows an account with the REPLICATION attribute to run arbitrary code as the | Vulnerebility | The Hacker News |
|
4.9.26 |
Over 440,000 Exploit Attempts Target Super Forms and Elementor Pro RCE Flaws | Threat actors are exploiting two critical security flaws in WordPress plugins Super Forms and Elementor Pro, according to findings from | Vulnerebility | The Hacker News |
|
4.9.26 |
Plex Urges Immediate Updates After Patching Multiple Undisclosed Security Flaws | Plex is urging users to update their instances to the latest version following the release of an update that patches multiple security flaws. | Vulnerebility | The Hacker News |
|
3.9.26 |
Critical Cisco Nexus 9000 Flaw Lets Unauthenticated Remote Attackers Run Code as Root | Cisco has released patches to address a critical security flaw affecting 10 Silicon One-based Nexus 9000 switches that could allow an unauthenticated, remote attacker to execute code as root, alongside an | Vulnerebility | The Hacker News |
|
2.9.26 |
GeoNetwork Fixes Unauthenticated RCE Chain Affecting Government Geoportal Backends | Two vulnerabilities in GeoNetwork can be chained to achieve unauthenticated remote code execution (RCE) on the open-source | Vulnerebility | The Hacker News |
|
30.8.26 |
GiveWP WordPress donation plugin flaw lets hackers execute server commands | A maximum-severity vulnerability in the GiveWP plugin for WordPress allows an unauthenticated attacker to execute arbitrary commands on the hosting server. | Vulnerebility | BleepingComputer |
|
30.8.26 |
Over 8,300 Gitea servers vulnerable to code execution attacks | Over 8,300 Internet-exposed Gitea instances are still unpatched against a critical security flaw exploited in ongoing remote code execution attacks, according to cybersecurity watchdog Shadowserver. | Vulnerebility | BleepingComputer |
|
30.8.26 |
ServiceNow warns of three max severity security vulnerabilities | ServiceNow released security patches for three new maximum-severity AI Platform vulnerabilities that can be exploited in code injection, SQL injection, and privilege escalation attacks. | Vulnerebility | BleepingComputer |
|
30.8.26 |
Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE | Multiple critical security flaws have been disclosed in WordPress plugins and themes, including WPMU DEV Dashboard, Avada, TranslatePress, Pods, and GiveWP, that could lead to authentication bypass, account takeover, and arbitrary code execution. | Vulnerebility | The Hacker News |
|
30.8.26 |
CISA orders feds to patch Citrix NetScaler RCE flaw by Saturday | CISA has ordered U.S. government agencies to patch their Citrix NetScaler appliances against an actively exploited remote code execution vulnerability by Saturday. | Vulnerebility | BleepingComputer |
|
29.8.26 |
Ubiquiti patches three max severity security vulnerabilities | Ubiquiti has released security patches for three new maximum-severity vulnerabilities that threat actors can exploit remotely without privileges. | Vulnerebility | BleepingComputer |
|
29.8.26 |
Unpatched Calix flaw lets hackers bypass NAT to expose internal devices | An unpatched vulnerability in Calix GS7 XGS (GS5239XG) residential routers used by multiple U.S. broadband providers allows remote, unauthenticated attackers to create port-forwarding rules that can expose local network devices to the public internet. | Vulnerebility | BleepingComputer |
|
29.8.26 |
Hackers target WordPress sites in miniOrange auth bypass attacks | Hackers are attempting to exploit two critical authentication bypass vulnerabilities in the miniOrange SAML 2.0 Single Sign On plugin for WordPress that can be used to forge SAML responses and log in as administrators. | Vulnerebility | BleepingComputer |
|
29.8.26 |
Attackers Chain Two PaperCut Flaws to Execute Code Without Authentication | Malicious actors are exploiting a newly patched security flaw in PaperCut NG and MF to execute arbitrary code on susceptible instances, as the | Vulnerebility | The Hacker News |
| 28.8.26 | Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth | Security researcher Olivier Laflamme has disclosed two independent root remote code execution (RCE) chains affecting the Unitree G1 EDU , | Vulnerebility | The Hacker News |
| 28.8.26 | Three CVSS 10.0 ServiceNow Flaws Could Let Unauthenticated Attackers Execute Code and SQL | ServiceNow has released patches for four security flaws impacting the ServiceNow AI Platform, three of them rated 10.0 on the CVSS scoring | Vulnerebility | The Hacker News |
| 28.8.26 | China-Made ZBT Routers Ship With Two Implants Giving Unauthenticated Attackers Root Access | VulnCheck has disclosed two previously undocumented factory implants in firmware for routers built by Shenzhen Zhibotong Electronics ( ZBT ), | Vulnerebility | The Hacker News |
| 28.8.26 | Critical cPanel Flaw Could Let One Hosting Customer Take Root Control of a Whole Server | cPanel has released patches for a security flaw affecting domain parking and addon domain functionality in cPanel and WebHost Manager (WHM), | Vulnerebility | The Hacker News |
| 28.8.26 | Next.js Patches Critical AVIF and Windows Flaws Enabling Unauthenticated RCE | Credit: Hacktron Vercel has released security patches for two critical-severity vulnerabilities in the Next.js web framework, both of which allow | Vulnerebility | The Hacker News |
| 26.8.26 | Unpatched Kaltura mwEmbed Flaws Could Let Remote Attackers Read Files and Run Code | The CERT Coordination Center (CERT/CC) has disclosed two unpatched vulnerabilities in Kaltura's HTML5 video player library that allow a remote, unauthenticated attacker to read arbitrary files from a server and execute code on it. | Vulnerebility | The Hacker News |
| 25.8.26 | Marimo Notebook Flaw Could Run MCP Commands Before Cells Execute in Edit Mode | Marimo has addressed a high-severity security flaw in its notebook software that allowed an attacker to execute an attacker-supplied Model | Vulnerebility | The Hacker News |
| 25.8.26 | VEEAM UNDER FIRE: Understanding CVE-2026–44963 & Ransomware Group Exploit Claims | NOTE: This research originated from an interaction with the Lynx Ransomware Group, which enabled me to thoroughly explore the Veeam CVE Exploit history. As a result, I discovered a previous exploit that predates the latest Veeam vulnerability. I have also made a quick ATTACK TTP MATRIX dedicated for Veeam Backup & Replication | Vulnerebility | THEREVENFILE |
| 25.8.26 | Attackers Target miniOrange SAML Flaws That Can Grant WordPress Admin Access | Bad actors are attempting to exploit two severe unauthenticated authentication bypasses in the Xecurify miniOrange SAML 2.0 Single Sign | Vulnerebility | The Hacker News |
| 24.8.26 | Cisco Crosswork, Secure Workload CVEs Patched | Cisco released security updates for Cisco Crosswork and Cisco Secure Workload, addressing nine vulnerabilities across the two product families. | Vulnerebility | SOCRADAR |
| 24.8.26 | CVE-2026-19478: GitLab GraphQL Flaw Exploited | GitLab has patched CVE-2026-19478, a critical code injection vulnerability affecting self-managed Community Edition (CE) and Enterprise Edition (EE) instances. Under certain conditions, an unauthenticated remote attacker could leverage a GraphQL directive to modify or delete public projects and user data. Because the flaw poses significant operational and supply chain risks to internet-facing deployments, prioritizing updates for self-managed environments is important. | Vulnerebility | SOCRADAR |
| 24.8.26 | CVE-2026-69836: Microsoft Entra ID RCE Fixed | Microsoft recently disclosed CVE-2026-69836, a critical Remote Code Execution (RCE) vulnerability in Microsoft Entra ID (formerly Azure Active Directory). Because this issue affected a Microsoft-hosted cloud service, remediation was applied on the backend rather than through a traditional customer patch. | Vulnerebility | SOCRADAR |
| 24.8.26 | Critical Keycloak Password Reset Flaw Could Let Unauthenticated Attackers Take Over Any Account | Red Hat and the Keycloak project have released patches to address a critical security flaw in the open-source identity and access management | Vulnerebility | The Hacker News |
| 23.8.26 | Critical Elementor Pro bug exposes WordPress sites to RCE attacks | A critical vulnerability in the Elementor Pro WordPress plugin could allow attackers to upload executable files for remote code execution on the server. | Vulnerebility | BleepingComputer |
| 23.8.26 | Citrix urges admins to patch new NetScaler flaws as soon as possible | Citrix has warned customers to immediately secure their systems against two vulnerabilities affecting NetScaler Gateway secure remote access solutions and NetScaler ADC networking appliances. | Vulnerebility | BleepingComputer |
| 23.8.26 | CISA warns of hackers exploiting critical MLflow vulnerability | The Cybersecurity and Infrastructure Security Agency (CISA) warned federal agencies that threat actors are now exploiting a critical vulnerability in the MLflow open-source AI engineering platform. | Vulnerebility | BleepingComputer |
| 23.8.26 | Critical Zimbra RCE flaw now actively exploited in attacks | CERT Polska, the Polish Computer Emergency Response Team (CERT), warned that attackers have begun exploiting a critical vulnerability in Zimbra Collaboration Suite (ZCS). | Vulnerebility | BleepingComputer |
|
21.8.26 |
Cisco Patches Nine Crosswork and Secure Workload Flaws, Five Scoring CVSS 10.0 | Cisco has published another round of security updates for Crosswork platforms and Secure Workload Software as part of a continued | Vulnerebility | The Hacker News |
|
21.8.26 |
GitLab CVE-2026-19478 Comes Under Active Exploitation Within Days of Disclosure | A newly disclosed security flaw in GitLab has come under active exploitation within days of public disclosure, according to watchTowr. The | Vulnerebility | The Hacker News |
|
20.8.26 |
Isolated-vm Flaw Lets Sandboxed JavaScript Escape to Host for Potential RCE | Cybersecurity researchers have disclosed a critical security flaw in isolated-vm , a popular open-source sandbox with more than 2,900 stars and 190 forks on GitHub, that could allow attackers to escape the confines | Vulnerebility | The Hacker News |
|
20.8.26 |
Critical NetScaler Flaw Can Bypass Authentication on Certain Gateway and AAA Servers | Citrix has released updates to address two security flaws impacting NetScaler ADC and NetScaler Gateway deployments, including a critical- | Vulnerebility | The Hacker News |
|
20.8.26 |
Can NVD Modernization Keep Pace With AI? | AI can help security teams find vulnerabilities faster. That sounds entirely positive until we consider what happens after those vulnerabilities are found. Every new finding still needs to be validated, enriched, prioritized, communicated, and eventually fixed. | Vulnerebility | SOCRADAR |
|
20.8.26 |
Critical vm2 Vulnerability Allows Host DNS Hijacking and Information Disclosure | vm2’s sandbox denylist forgot two modules: “os” and “dns.” Under the wildcard config vm2’s own docs recommend, that gap lets sandboxed code read the host process owner’s identity and hijack the host’s DNS with a single call — a change that outlives the sandbox run and never notifies the embedder. Patched in 3.11.6. | Vulnerebility | OX |
|
20.8.26 |
Critical and High-Severity GraphQL CVEs in GitLab: Code Injection and CSRF via One Directive | Two flaws in GitLab’s GraphQL API: one lets any user wipe or alter public projects and user data, the other quietly runs changes using a logged-in user’s own permissions. Self-managed instances from 18.2 through 19.2 need to upgrade now. | Vulnerebility | OX |
|
20.8.26 |
Elementor Pro Flaw Could Let Unauthenticated Attackers Upload PHP and Execute Code | Cybersecurity researchers have disclosed details of a critical flaw in the Elementor Pro WordPress plugin that, if successfully exploited, could lead | Vulnerebility | The Hacker News |
|
19.8.26 |
943 Patches Rolled Out With Oracle’s August 2026 Security Update | The fixes resolve over 1,000 vulnerabilities across two dozen products, including over 460 remotely exploitable bugs. | Vulnerebility | SECURITYWEEK |
|
19.8.26 |
Chrome, Firefox Updates Patch Dozens of Vulnerabilities | The bugs could lead to code execution, privilege escalation, sandbox escape, and information disclosure. | Vulnerebility | SECURITYWEEK |
|
18.8.26 |
CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE | The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a critical flaw impacting Ray to its Known Exploited | Vulnerebility | The Hacker News |
|
18.8.26 |
Critical GitLab GraphQL Flaw Could Let Unauthenticated Attackers Delete Public Projects | GitLab has released security updates to address a critical vulnerability impacting its Community Edition (CE) and Enterprise Edition (EE) software | Vulnerebility | The Hacker News |
|
18.8.26 |
Forminator WordPress Flaw Can Enable Unauthenticated RCE via Malicious PHP Uploads | A critical security flaw has been disclosed in Forminator Forms, a WordPress plugin with more than 600,000 active installations, that could | Vulnerebility | The Hacker News |
|
16.8.26 |
Max severity SAP Commerce Cloud flaw now targeted in attacks | A maximum-severity SAP Commerce Cloud remote code execution vulnerability patched three days ago is already being targeted in attacks, according to threat intelligence company Defused. | Vulnerebility | BleepingComputer |
|
16.8.26 |
Microsoft patches LegacyHive Windows zero-day vulnerability | Microsoft has released security patches to address a Windows zero-day vulnerability known as "LegacyHive," disclosed after the July 2026 Patch Tuesday. | Vulnerebility | BleepingComputer |
|
16.8.26 |
Critical VMware vCenter RCE flaw exploited for reverse SSH access | A recently patched critical vulnerability (CVE-2026-59310) in VMware vCenter Syslog Server is being exploited in an active campaign to deploy a reverse SSH tool for persistence and remote access. | Vulnerebility | BleepingComputer |
|
16.8.26 |
New Microsoft Defender 'ShieldBreak' zero-day grants SYSTEM privileges | Nightmare Eclipse has released a new Microsoft Defender zero-day exploit named "ShieldBreak" after Microsoft released the August 2026 Patch Tuesday security updates. | Vulnerebility | BleepingComputer |
|
15.8.26 |
SAP Commerce Cloud CVE-2026-58231 Targeted in Exploitation Attempts Days After Patch | A maximum-severity security vulnerability impacting SAP Commerce Cloud is witnessing active exploitation efforts. The vulnerability, tracked as | Vulnerebility | The Hacker News |
|
15.8.26 |
Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero Miner | A recently patched security flaw in Apple macOS has come under active exploitation in the wild to deploy a cryptocurrency miner, the Netherlands National Cyber Security Centre (NCSC) has warned . | Vulnerebility | The Hacker News |
|
13.8.26 |
Critical VMware vCenter Vulnerability in Attackers’ Crosshairs | Tracked as CVE-2026–59310, the directory traversal bug allows remote attackers to execute arbitrary code. | Vulnerebility | SECURITYWEEK |
|
13.8.26 |
Fortinet Patches Authentication Flaws in FortiWeb and FortiManager | The vulnerabilities could allow attackers to log in with random usernames and passwords or impersonate any FortiGate appliance | Vulnerebility | SECURITYWEEK |
|
12.8.26 |
August 2026 Patch Tuesday: 421 Flaws, 3 Zero-Days | Microsoft’s August 2026 Patch Tuesday release addresses 421 vulnerabilities, including three zero-days. One zero-day was exploited in the wild, while two others were publicly disclosed before fixes were available. | Vulnerebility | SOCRADAR |
|
12.8.26 |
SAP Commerce Cloud CVE-2026-58231 Requires Urgent Patching | SAP has addressed CVE-2026-58231, a maximum-severity improper authorization vulnerability in the Data Hub Adapter for SAP Commerce Cloud. The flaw carries a CVSS score of 10.0 and may allow an unauthenticated attacker with network access to execute arbitrary code on an affected system. | Vulnerebility | SOCRADAR |
|
12.8.26 |
Adobe Patches Three CVSS 10.0 ColdFusion and Campaign Classic Flaws | Adobe has shipped updates to address multiple critical security vulnerabilities impacting ColdFusion, Commerce, and Campaign Classic | Vulnerebility | The Hacker News |
|
12.8.26 |
CopyEscape: Taking Over Docker Hosts with docker cp | Imperva Red Team uncovered CVE-2026-17106, a container-to-host arbitrary file-write vulnerability in Docker’s docker cp command. Docker later confirmed that the same CVE also affected sbx cp when copying files out of Docker Sandboxes. | Vulnerebility | IMPERVA |
|
12.8.26 |
Imperva Customers Protected Against XSS2Shell (CVE-2026-64638) in WordPress Core | TL;DR: CVE-2026-64638, dubbed XSS2Shell, is a high-severity WordPress Core vulnerability that begins as a pre-authentication reflected XSS on the login screen and can be chained to PHP code execution when a logged-in administrator is successfully targeted. | Vulnerebility | IMPERVA |
|
12.8.26 |
SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code | SAP has released patches to address a maximum-severity security flaw impacting Commerce Cloud (Data Hub Adapter) that could result in | Vulnerebility | The Hacker News |
|
8.8.26 |
TP-Link patches Omada ZTP flaws allowing hackers to breach networks | TP-Link has patched 15 vulnerabilities in the zero-touch provisioning (ZTP) mechanism of its Omada network devices that could be chained with previously disclosed flaws to achieve remote code execution (RCE). | Vulnerebility | BleepingComputer |
|
8.8.26 |
N-able Issues N-central Hotfix 2 as Attackers Reach Managed Systems and Persist | N-able has released a fresh round of hotfixes for N‑central as part of its investigation into ongoing exploitation of a recently disclosed security flaw | Vulnerebility | The Hacker News |
|
8.8.26 |
Progress Kemp LoadMaster Flaw Hits CISA KEV After 792 Reported Exploit Attempts | The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added a critical-severity security flaw impacting Progress Kemp | Vulnerebility | The Hacker News |
|
8.8.26 |
New WordPress Pre-Auth XSS Could Lead to PHP Code Execution - Patch ASAP | WordPress has fixed a pre-authentication reflected cross-site scripting (XSS) flaw in its login screen that affects every version of the content | Vulnerebility | The Hacker News |
|
7.8.26 |
18-Year-Old Linux SCTP Flaw Could Let Local Users Gain Root and Escape Containers | A use-after-free bug in Linux's SCTP networking code can be turned into full root on a host, and Tencent researchers say they used it to escape a container and reach the machine underneath. The flaw has existed since | Vulnerebility | The Hacker News |
|
7.8.26 |
CVE-2026-44613: Turning a CSRF into Silent Unauthorized Actions | Apache Zeppelin’s default CORS configuration allowed cross-origin, credentialed, state-changing requests (and accepted text/plain request bodies), letting a remote attacker who lures an authenticated user to a malicious site perform unauthorized actions through Zeppelin’s REST and WebSocket endpoints. | Vulnerebility | OX |
|
7.8.26 |
New Zapscape KVM Flaw Could Let Privileged L1 Guest Code Escape to Linux Hosts | Zapscape , a new Linux kernel vulnerability, could allow an attacker with kernel privileges inside an L1 guest virtual machine (VM) to escape KVM | Vulnerebility | The Hacker News |
|
6.8.26 |
Cisco Patches 12 SD-WAN and IOS XE Flaws, Including Three 9.8 CVSS Score Bugs | Cisco has rolled out updates to address multiple critical security vulnerabilities impacting Catalyst SD-WAN and IOS XE Software as part of | Vulnerebility | The Hacker News |
|
6.8.26 |
AWS, Google, and Vercel Patch Agent Flaws That Let Tool Calls Skip the Model | Security flaws in agent infrastructure from Amazon Web Services (AWS), Google, and Vercel let untrusted or forged instructions reach an agent's tools with no check that a model turn had authorized them. In several of | Vulnerebility | The Hacker News |
|
5.8.26 |
Veeam, Terraform MCP, Django Patch Critical Flaws, Led by CVSS 10.0 Cross-Tenant Bug | HashiCorp, Veeam, and the Django Software Foundation have patched 11 vulnerabilities across Terraform MCP Server, Veeam Service Provider | Vulnerebility | The Hacker News |
|
5.8.26 |
New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch | A memory corruption flaw in the Linux kernel's Open vSwitch datapath gives ordinary local users a path to root on a broad set of default- | Vulnerebility | The Hacker News |
|
5.8.26 |
Critical Gitea Flaw Let Unauthenticated Attackers Read Server Files via Org-Mode Markup | An unauthenticated attacker can read any file the service account can access on Gitea , the self-hosted Git platform, in versions 1.22.1 through | Vulnerebility | The Hacker News |
|
5.8.26 |
Leaked n8n API Tokens Exposed Live Instances to Credential Theft | GitGuardian researchers found 321 n8n instances accepting API tokens exposed in public GitHub commits and demonstrated four ways attackers | Vulnerebility | The Hacker News |
|
5.8.26 |
N-able warns of N-central auth bypass flaw exploited in attacks | N-able is warning customers that hackers are exploiting an authentication bypass vulnerability (CVE-2026-18577) affecting both hosted and on-premises N-central servers. | Vulnerebility | BleepingComputer |
|
5.8.26 |
COLDCARD wallet RNG flaw likely linked to $88 million Bitcoin theft | A vulnerability in COLDCARD hardware wallet firmware allowed attackers to steal an estimated $88.6 million in Bitcoin from thousands of wallets whose seeds were generated using a flawed random number generator. | Vulnerebility | BleepingComputer |
|
4.8.26 |
New cPanel Critical Flaw Could Let Hosting Customers Run SQL as Database Root | cPanel has patched a flaw that let an authenticated hosting customer execute SQL in the database's root context, crossing the privilege | Vulnerebility | The Hacker News |
|
3.8.26 |
Thermo Fisher Patches Flaw That Could Make DNA File Tampering Nearly Undetectable | Thermo Fisher Scientific has patched a flaw in select Applied Biosystems human identification software that could allow data files to be altered | Vulnerebility | The Hacker News |
|
3.8.26 |
Hugging Face Diffusers Flaws Could Let Model Repositories Execute Arbitrary Code | Three high-severity security flaws have been disclosed in Hugging Face's Diffusers library that could allow crafted model repositories to stealthily | Vulnerebility | The Hacker News |
|
2.8.26 |
Rails patches critical Active Storage flaw with RCE potential | A critical vulnerability in the Active Storage framework can allow an unauthenticated attacker to read arbitrary files from a Rails application, and potentially escalate to remote code execution (RCE). | Vulnerebility | BleepingComputer |
|
2.8.26 |
JetBrains warns of critical TeamCity remote code execution flaw | JetBrains is warning of a critical authentication bypass vulnerability affecting TeamCity On-Premises that could be exploited to achieve remote code execution. | Vulnerebility | BleepingComputer |
|
2.8.26 |
VMware fixes three critical flaws allowing auth bypass, VM escapes | Broadcom has released security updates to fix five vulnerabilities in VMware vCenter, ESX, Workstation, and Fusion, including three critical flaws that allow attackers to bypass authentication, execute arbitrary code, or escape from a virtual machine to the host. | Vulnerebility | BleepingComputer |
|
2.8.26 |
Cisco warns of FMC static credential flaw exploited in zero-day attacks | Cisco is warning that a high-severity Secure Firewall Management Center (FMC) static credential vulnerability, tracked as CVE-2026-20316, was actively exploited in zero-day attacks to gain unauthorized access to vulnerable devices. | Vulnerebility | BleepingComputer |
|
1.8.26 |
vBulletin fixes critical pre-auth RCE flaw with public exploit | A critical vulnerability in the vBulletin forum software allows unauthenticated attackers to execute arbitrary PHP code through template rendering. | Vulnerebility | BleepingComputer |
|
1.8.26 |
Adobe Campaign Classic CVSS 10.0 Flaw Could Run Code Without User Interaction | Adobe has released security updates to address a maximum-severity security flaw in Campaign Classic (ACC), its enterprise-focused marketing | Vulnerebility | The Hacker News |
|
31.7.26 |
Three Recent Chrome Releases Fix 1,442 Flaws, More Than Prior 23 Updates Combined | Google on Thursday announced that it fixed a whopping 1,072 security bugs in Chrome versions 149 and 150, surpassing the total number of | Vulnerebility | The Hacker News |
|
31.7.26 |
Researchers Report 84 Flaws in 4G and 5G Cores, Including a Session Hijacking Flaw | An academic study has disclosed a "widespread class" of security vulnerabilities impacting 4G and 5G core networks that, if successfully exploited, could trigger denial-of-service (DoS) attacks and even session hijacking, allowing an attacker to seize control of a user's network session. | Vulnerebility | The Hacker News |
|
30.7.26 |
Azure Cosmos DB Flaw Exposed Platform-Wide Key That Could Access Any Database | A now-patched vulnerability in Azure Cosmos DB could have let an attacker escape the service's Gremlin query sandbox and obtain full read and write access to databases across customer tenants, according to Wiz. | Vulnerebility | The Hacker News |
|
30.7.26 |
Hackers target US firms in FastJson RCE zero-day attacks | Hackers are actively exploiting a vulnerability in the FastJson open-source Java library, allowing remote code execution without user interaction or elevated privileges. | Vulnerebility | BleepingComputer |
|
30.7.26 |
Arista patches VeloCloud Orchestrator zero-day exploited in attacks | Arista has patched a maximum-severity command injection vulnerability in on-premises VeloCloud Orchestrator deployments that is being actively exploited in attacks. | Vulnerebility | BleepingComputer |
|
30.7.26 |
Critical Rails Flaw Could Let Unauthenticated Attackers Read Server Files via Image Uploads | Ruby on Rails has released fixes for a critical Active Storage vulnerability that could let unauthenticated attackers read arbitrary files from | Vulnerebility | The Hacker News |
|
30.7.26 |
Three Critical VMware Flaws Allow Auth Bypass, Code Execution, and VM Escape | Broadcom has released security updates to address multiple security flaws impacting VMware ESX, vCenter, Workstation, and Fusion, three of | Vulnerebility | The Hacker News |
|
29.7.26 |
Public PoC Released for Exploited Check Point SmartConsole Authentication Bypass | Cybersecurity researchers have shared additional technical details about a recently patched critical security flaw impacting Check Point Security Management Server and Multi-Domain Security Management Server (MDS) that has come under active exploitation in the wild. | Vulnerebility | The Hacker News |
|
29.7.26 |
New Gitea RCE Lets Repository Writers Plant a Git Hook to Run Shell Commands | Gitea, the self-hosted Git platform, has patched a critical remote code execution vulnerability. A user with ordinary repository write access can | Vulnerebility | The Hacker News |
|
28.7.26 |
How We Hacked Thousands of Data Centers in Minutes Using a 20-Year-Old Vulnerability | A 20-year-old vulnerability gave us access to bare-metal servers - and a foothold in the no man’s land of data center infrastructure. | Vulnerebility | LAVAHQ.IO |
|
28.7.26 |
JFrog Confirms OpenAI Models Exploited Artifactory Zero-Day Before Hugging Face Breach | JFrog has confirmed that OpenAI models exploited a zero-day in self-hosted Artifactory while trying to reach the open internet from a sealed evaluation environment. Artifactory is JFrog's software repository | Vulnerebility | The Hacker News |
|
28.7.26 |
Critical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as Root | OpenWrt has shipped version 24.10.8 to close a critical DHCPv6 stack overflow and a wider set of remotely triggerable flaws in network services | Vulnerebility | The Hacker News |
|
28.7.26 |
Critical TeamCity Flaw Could Let Attackers Run OS Commands Without Logging In | JetBrains is urging customers of on-premise versions of TeamCity to update to the latest version following the discovery of a critical security | Vulnerebility | The Hacker News |
|
28.7.26 |
Public Exploit Released for Patched vBulletin Pre-Auth Code Execution Flaw | Public exploit details released on July 27 show how an unauthenticated request can reach PHP's eval() function inside vBulletin and execute code | Vulnerebility | The Hacker News |
|
27.7.26 |
n8n Sandbox Escape Lets Workflow Editors Run OS Commands as the n8n Process | n8n has patched a high-severity expression-sandbox escape that could let an authenticated workflow editor execute operating-system commands on the server running the automation platform. Security Joes found the flaw | Vulnerebility | The Hacker News |
|
25.7.26 |
Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched Available | Security firms ThreatBook and Imperva say attackers are targeting a critical flaw in Fastjson, Alibaba's JSON library for Java. In affected Spring | Vulnerebility | The Hacker News |
|
25.7.26 |
Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as Git | Security researchers at depthfirst published working exploit code on July 24 for a GitLab flaw that GitLab patched six weeks earlier, on June 10. It | Vulnerebility | The Hacker News |
|
25.7.26 |
New RefluXFS Linux flaw lets attackers gain root privileges | A nine-year-old race condition vulnerability in the Linux kernel's XFS filesystem, tracked as CVE-2026-64600, allows local attackers to overwrite protected files and gain root privileges. | Vulnerebility | BleepingComputer |
|
25.7.26 |
New InfraTrust report reveals infrastructure flaws admins should patch first | Eclypsium has launched InfraTrust, a new infrastructure cybersecurity knowledge base and monthly InfraTrust Pulse report designed to help organizations prioritize vulnerabilities affecting infrastructure, firmware, networking, and edge devices. | Vulnerebility | BleepingComputer |
|
24.7.26 |
WordPress Exploitation Underway (CVE-2026-63030) | Last week, Searchlight Cyber released details about a vulnerability they are calling "wp2shell". The vulnerability was initially announced without a CVE number. | Vulnerebility | SANS |
|
24.7.26 |
Bing Images Flaws Let Crafted SVGs Run Commands as SYSTEM on Microsoft's Servers | A crafted SVG submitted to Bing's image search ran commands as NT AUTHORITY\SYSTEM on Microsoft's production image-processing | Vulnerebility | The Hacker News |
|
23.7.26 |
Critical SharePoint RCE flaw exploited to steal machine keys | Hackers are actively exploiting the critical CVE-2026-50522 vulnerability in Microsoft SharePoint to steal machine keys and maintain access even after affected servers are patched. | Vulnerebility | BleepingComputer |
|
23.7.26 |
Critical wp2shell WordPress flaws exploited to install webshells | Hackers are exploiting the "wp2shell" critical vulnerability suite (CVE-2026-63030 and CVE-2026-60137) affecting WordPress Core to deploy persistent webshells and install malicious plugins on affected servers. | Vulnerebility | BleepingComputer |
|
23.7.26 |
Closing the Identity Gaps in Critical Infrastructure Security | Critical infrastructure attacks often begin with stolen credentials, compromised devices, or trusted accounts. Specops Software explains why Zero Trust should verify both user identities and device trust before granting access to critical systems. | Vulnerebility | BleepingComputer |
|
23.7.26 |
Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL Installs | RefluXFS , a new Linux kernel flaw disclosed on July 22 and tracked as CVE-2026-64600 , lets an unprivileged local user overwrite root-owned files on an XFS filesystem and gain persistent root access. Qualys said default | Vulnerebility | The Hacker News |
|
23.7.26 |
Check Point Patches Exploited SmartConsole Flaw Allowing Full Admin Access | Check Point has released security updates to address multiple vulnerabilities impacting Security Management and Multi-Domain | Vulnerebility | The Hacker News |
|
23.7.26 |
GitHub Cuts Public Bug Bounty Payouts, Moves Top Rewards to VIP Tier | Beginning July 27, 2026, GitHub will cut public bug bounty payouts by at least half at every severity level. Critical findings will drop from $20,000-$30,000+ to a fixed $10,000, while its permanent invite-only VIP tier will pay $30,000 or more. | Vulnerebility | The Hacker News |
|
21.7.26 |
AWS Kiro Flaw Let a Poisoned Web Page Rewrite Its Config and Run Code | Hidden text on a web page was enough to make Kiro , AWS's agentic coding IDE, rewrite its own configuration file and run an attacker's code | Vulnerebility | The Hacker News |
|
21.7.26 |
Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC | A third SharePoint Server flaw patched by Microsoft as part of its Patch Tuesday update for July 2026 has come under active exploitation, per | Vulnerebility | The Hacker News |
|
21.7.26 |
Zimbra Patches Critical SNMP Command Injection and Four XSS Vulnerabilities | Zimbra has rolled out fixes to address multiple critical security issues, including a command injection flaw in the Simple Network Management | Vulnerebility | The Hacker News |
|
21.7.26 |
Windows LegacyHive zero-day flaw gets free, unofficial patches | Free unofficial patches are available for a recently disclosed Windows zero-day flaw that allows attackers to escalate privileges on up-to-date Windows systems. | Vulnerebility | BleepingComputer |
|
20.7.26 |
New 7-Zip Vulnerability Could Let Crafted XZ Archives Run Code During Extraction | Opening a crafted XZ archive in 7-Zip could let an attacker run code on the machine. The flaw, CVE-2026-14266 , is a heap-based buffer overflow | Vulnerebility | The Hacker News |
|
20.7.26 |
Critical NGINX Vulnerability Can Crash Workers and May Allow Remote Code Execution | F5 has shipped fixes for a critical nginx flaw that lets a remote, unauthenticated attacker trigger a heap buffer overflow in the worker | Vulnerebility | The Hacker News |
|
19.7.26 |
Update now: 7-Zip fixes RCE flaw exploitable with malicious archives | 7-Zip version 26.02 was released to fix a remote code execution vulnerability that could allow attackers to execute malicious code by convincing users to open specially crafted compressed files. | Vulnerebility | BleepingComputer |
|
19.7.26 |
WordPress Core "wp2shell" RCE flaws get public exploits, patch now | Public exploits have been released for the critical "wp2shell" remote code execution vulnerabilities affecting WordPress Core, making it imperative that administrators patch their sites immediately | Vulnerebility | BleepingComputer |
|
19.7.26 |
HollowByte DDoS flaw bloats OpenSSL server memory with 11-byte payload | A vulnerability dubbed HollowByte allows unauthenticated attackers to trigger a denial-of-service (DoS) condition on OpenSSL servers with a malicious payload of just 11 bytes. | Vulnerebility | BleepingComputer |
|
19.7.26 |
New Windows LegacyHive zero-day gives hackers admin privileges | A security researcher using the "Nightmare Eclipse" handle has released a Windows zero-day exploit dubbed LegacyHive that allows attackers to escalate privileges on up-to-date Windows systems. | Vulnerebility | BleepingComputer |
|
18.7.26 |
Zoom warns of critical account takeover vulnerability | Zoom is warning of a critical vulnerability in its desktop client and software development kit for Windows that could be exploited by an unauthenticated party to hijack accounts. | Vulnerebility | BleepingComputer |
|
18.7.26 |
Progress confirms ShareFile zero-day flaw behind Storage Zone shutdown | Progress Software has confirmed that a high-severity zero-day vulnerability is behind the emergency shutdown of ShareFile Storage Zone Controllers last week and has released security updates to patch the flaw. | Vulnerebility | BleepingComputer |
|
18.7.26 |
New wp2shell WordPress Core Flaw Lets Unauthenticated Attackers Run Code | Updated July 18, 2026: the two flaws now carry CVE IDs, the full mechanism has been published, a persistent-object-cache condition has | Vulnerebility | The Hacker News |
| 17.7.26 | SAP warns of critical flaws in NetWeaver and Commerce Cloud | SAP has addressed 16 vulnerabilities across multiple products as part of its July 2026 security updates, including three critical flaws in NetWeaver, Commerce Cloud, and AppRouter | Vulnerebility | BleepingComputer |
| 17.7.26 | CISA warns of actively exploited RCE flaws in Joomla extensions | The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning that attackers are exploiting vulnerabilities in the iCagenda and Balbooa Forms extensions for Joomla to achieve remote code execution through arbitrary file uploads. | Vulnerebility | BleepingComputer |
| 16.7.26 | Unpatched Shark Vacuum Flaw Could Let Attackers Control Other Vacuums Region-Wide | Pull the certificate off the flash of a Shark RV2320EDUS robot vacuum, and you can run root commands on other people's Shark vacuums across | Vulnerebility | The Hacker News |
| 16.7.26 | Zoom Patches Critical Windows Flaw That Could Enable Account Takeover | Zoom has released security updates for a critical security flaw impacting Zoom Workplace for Windows that could facilitate account takeover. The | Vulnerebility | The Hacker News |
| 16.7.26 | Firefox, Chrome, Adobe, and VMware Updates Fix Multiple Critical Security Flaws | Mozilla has released updates to address two critical flaws in Firefox for which it warned that exploit code has been published. The vulnerabilities are listed below - CVE-2026-15718 , an invalid pointer in the JavaScript: | Vulnerebility | The Hacker News |
| 16.7.26 | Researcher Drops New Windows Zero-Day PoC Hours After Microsoft Patch Tuesday | Security researcher Chaotic Eclipse (aka Nightmare-Eclipse ) has released a new proof-of-concept (PoC) exploit called LegacyHive. | Vulnerebility | The Hacker News |
| 16.7.26 | Cursor Flaw Lets Malicious Cloned Repositories Trigger Windows Code Execution | Open a repository in Cursor on Windows and, if a file named git.exe is sitting in the project root, Cursor runs it. No click, no approval dialog, no | Vulnerebility | The Hacker News |
| 15.7.26 | Two SonicWall SMA 1000 Zero-Days Exploited, One Could Enable Admin Commands | SonicWall has warned of active exploitation of two zero-day vulnerabilities impacting Secure Mobile Access (SMA) 1000 series appliances, one of which could be exploited to achieve arbitrary command execution. | Vulnerebility | The Hacker News |
| 15.7.26 | Microsoft Patches Record 622 Flaws, Including Two Zero-Days Under Active Attack | Microsoft shipped its largest Patch Tuesday on record today, and two of the fixes close holes that attackers are already exploiting. The release | Vulnerebility | The Hacker News |
| 14.7.26 | SAP Patches CVSS 9.9 NetWeaver ABAP Flaw That Could Expose or Modify Data | SAP has rolled out updates to address multiple vulnerabilities as part of its July 2026 security updates, including a critical flaw in SAP NetWeaver | Vulnerebility | The Hacker News |
| 14.7.26 | RabbitMQ Flaws Could Leak OAuth Secrets and Expose Cross-Tenant Queue Metadata | Cybersecurity researchers have disclosed details of two access control-related flaws impacting the RabbitMQ message broker service that could | Vulnerebility | The Hacker News |
| 12.7.26 | New U-Boot flaws could enable stealthy firmware attacks | Six vulnerabilities in the widely used U-Boot bootloader have been discovered that could allow attackers to execute malicious code during device boot, potentially enabling stealthy firmware attacks that compromise security protections and install persistent malware. | Vulnerebility | BleepingComputer |
| 12.7.26 | Progress urges ShareFile admins to shut down servers over “credible” threat | Progress Software is emailing ShareFile customers who use Storage Zone Controllers to immediately shut down their servers after identifying what it describes as a "credible external security threat" targeting the on-premises secure file-sharing software. | Vulnerebility | BleepingComputer |
| 12.7.26 | Zimbra urges customers to patch critical web client XSS flaw | The Zimbra security team urged customers to patch a critical vulnerability affecting the Classic Web Client used to access the Zimbra Collaboration suite. | Vulnerebility | BleepingComputer |
| 11.7.26 | Microsoft patches RoguePlanet Defender zero-day vulnerability | Microsoft has released a security patch to address a Defender zero-day vulnerability known as "RoguePlanet," disclosed after the June 2026 Patch Tuesday. | Vulnerebility | BleepingComputer |
| 11.7.26 | CISA orders feds to prioritize patching Langflow auth bypass flaw | The U.S. Cybersecurity and Infrastructure Security Agency (CISA) gave federal agencies until Friday to patch an actively exploited vulnerability in the Langflow visual framework for building AI agents. | Vulnerebility | BleepingComputer |
| 11.7.26 | Ubiquiti warns of new max severity UniFi OS vulnerability | Ubiquiti has released security updates to patch seven critical vulnerabilities in UniFi OS, including a maximum-severity flaw that can be exploited in command injection attacks. | Vulnerebility | BleepingComputer |
| 11.7.26 | Critical Zimbra Flaw Could Let Crafted Emails Run Malicious Code in User Sessions | Zimbra is urging customers to apply updates to address a critical security vulnerability impacting the Classic Web Client that could result in | Vulnerebility | The Hacker News |
| 11.7.26 | URGENT - Progress Tells ShareFile Customers to Shut Down Storage Zone Controllers Over Security Threat | Progress Software has told ShareFile customers to shut down the Windows servers running their Storage Zone Controllers, confirming to | Vulnerebility | The Hacker News |
| 11.7.26 | Six New U-Boot Flaws Could Let Malicious Images Crash Devices or Run Code at Boot | Researchers at firmware security firm Binarly have found six new flaws in U-Boot, the small program that starts up hardware as varied as home | Vulnerebility | The Hacker News |
| 10.7.26 | Unpatched XRING Flaw in XQUIC Lets Remote Clients Crash HTTP/3 Servers | A single wrong variable on one line in XQUIC, Alibaba's QUIC and HTTP/3 library, lets any remote client crash the server with a short burst of | Vulnerebility | The Hacker News |
| 9.7.26 | Microsoft Patches RoguePlanet Defender Flaw That Can Grant SYSTEM Privileges | Microsoft has released security updates for a Defender vulnerability known as RoguePlanet, nearly a month after details of the flaw became | Vulnerebility | The Hacker News |
| 9.7.26 | CISA orders feds to patch max severity ColdFusion flaw by Friday | The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered government agencies to patch an actively exploited maximum-severity flaw in the Adobe ColdFusion commercial web app development platform by Friday. | Vulnerebility | BleepingComputer |
| 9.7.26 | New Januscape Linux flaw allows VM escape on Intel, AMD devices | A 16-year-old Linux kernel vulnerability, dubbed Januscape, allows attackers to escape a virtual machine and execute arbitrary code on the host. | Vulnerebility | BleepingComputer |
| 9.7.26 | BeyondTrust warns of critical flaws in remote access software | BeyondTrust warned customers to patch two critical security flaws in its Remote Support (RS) and Privileged Remote Access (PRA) software that could allow attackers to bypass authentication. | Vulnerebility | BleepingComputer |
| 8.7.26 | Ubiquiti Patches Critical UniFi Flaws Across Connect, Talk, Access, Protect, and OS | Ubiquiti has shipped updates to address multiple critical security flaws impacting UniFi Connect, UniFi Talk, UniFi Access, UniFi Protect, and | Vulnerebility | The Hacker News |
| 8.7.26 | 15-Year-Old GhostLock Flaw Enables Root and Container Escape on Most Linux Distros | Researchers at Nebula Security have disclosed GhostLock ( CVE-2026-43499 ), a 15-year-old Linux kernel flaw that lets any logged-in user take full root control of a machine that has not been patched. The vulnerable | Vulnerebility | The Hacker News |
| 8.7.26 | Rogue Agent Flaw Could Have Let Attackers Hijack Google Dialogflow CX Chatbots | A critical flaw in Google's Dialogflow CX could have let an attacker with edit rights on one Code Block-enabled agent compromise other Code | Vulnerebility | The Hacker News |
| 7.7.26 | BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRA | BeyondTrust has released updates to address two critical security flaws affecting Remote Support (RS) and Privileged Remote Access (PRA) products that, if successfully exploited, could allow unauthenticated | Vulnerebility | The Hacker News |
| 6.7.26 | 16-Year-Old Linux KVM Flaw Lets Guest VMs Escape to Host on Intel and AMD x86 Systems | A use-after-free bug in Linux's KVM hypervisor can be triggered from a guest virtual machine to corrupt the shadow-page state of the host kernel | Vulnerebility | The Hacker News |
| 6.7.26 | Threat Actors Probe Gitea Docker Flaw CVE-2026-20896 13 Days After Disclosure | Threat actors have been observed attempting to exploit a recently patched critical security flaw in Gitea Docker images, according to Sysdig | Vulnerebility | The Hacker News |
| 6.7.26 | Opera GX Flaw Let Malicious Sites Auto-Install Mods to Steal Data From Visited Pages | Researchers found a flaw in Opera GX , the gaming-focused version of the Opera browser, that let a malicious website silently install a browser | Vulnerebility | The Hacker News |
| 4.7.26 | Adobe patches seven max severity ColdFusion, Campaign flaws | Adobe has released security patches for seven maximum-severity vulnerabilities in the ColdFusion web app development platform and the Campaign Classic marketing automation platform. | Vulnerebility | BleepingComputer |
| 4.7.26 | Unpatched Flaws Disclosed in Filesystem Bundled Into Millions of Embedded Devices | Security firm runZero has disclosed seven vulnerabilities in FatFs , a small filesystem library that lets a device read and write the FAT and | Vulnerebility | The Hacker News |
| 2.7.26 | Critical SimpleHelp flaw exploited to deploy new stealer malware | Hackers are exploiting a recently disclosed critical vulnerability (CVE-2026-48558) in SimpleHelp to deploy Djinn Stealer, a previously undocumented cross-platform information stealer targeting Windows, macOS, and Linux. | Vulnerebility | BleepingComputer |
| 2.7.26 | Hackers now exploit critical Oracle E-Business flaw in attacks | Attackers have begun exploiting a critical vulnerability (CVE-2026-46817) in the Oracle E-Business Suite (EBS) financial application, according to threat intelligence company Defused. | Vulnerebility | BleepingComputer |
| 2.7.26 | Unpatched Argo CD Repo-Server Flaw Could Let Attackers Take Over Kubernetes Clusters | Argo CD , a widely used tool for deploying software to Kubernetes, has an unpatched flaw in its repo-server component that lets an unauthenticated | Vulnerebility | The Hacker News |
| 1.7.26 | Adobe Patches 7 CVSS 10.0 Flaws in ColdFusion and Campaign Classic | Adobe has released patches for multiple maximum-severity security flaws impacting Adobe ColdFusion and Adobe Campaign Classic. The | Vulnerebility | The Hacker News |
| 1.7.26 | Critical Cursor Flaws Could Let Prompt Injection Escape Sandbox and Run Commands | Two flaws in Cursor, an AI code editor, could let a single, ordinary-looking prompt break out of the editor's safety sandbox and run any command on | Vulnerebility | The Hacker News |
| 1.7.26 | Citrix Patches Six NetScaler Flaws Allowing File Read and Denial-of-Service | Citrix on Tuesday released security updates to address multiple flaws in NetScaler ADC (formerly Citrix ADC) and NetScaler Gateway (formerly | Vulnerebility | The Hacker News |
| 30.6.26 | Progress Kemp LoadMaster Flaw Could Let Attackers Run Root Commands Pre-Auth | A critical vulnerability in Progress Kemp LoadMaster can let an unauthenticated attacker execute arbitrary commands as root on the | Vulnerebility | The Hacker News |
| 29.6.26 | Public PoC Released for Critical libssh2 CVE-2026-55200 Client-Side SSH Flaw | A public proof-of-concept is now out for CVE-2026-55200 , a critical flaw in libssh2 that lets a malicious or compromised SSH server trigger | Vulnerebility | The Hacker News |
| 27.6.26 | Mandiant reveals how Cisco SD-WAN zero-day attacks gained root access | New details have been revealed on how hackers exploited a Cisco Catalyst SD-WAN vulnerability tracked as CVE-2026-20245 in zero-day attacks to create rogue root accounts on targeted devices. | Vulnerebility | BleepingComputer |
| 27.6.26 | Cisco Unified CM flaw CVE-2026-20230 now exploited in attacks | A high-severity SSRF vulnerability, tracked as CVE-2026-20230, in Cisco Unified Communications Manager Server is now being exploited in attacks. | Vulnerebility | BleepingComputer |
| 27.6.26 | Microsoft fixes AutoGen Studio flaw that enabled code execution | A vulnerability chain dubbed AutoJack in Microsoft's AutoGen Studio interface for prototyping AI agents could let attackers manipulate an agent into executing arbitrary commands on its host system simply by visiting a malicious webpage. | Vulnerebility | BleepingComputer |
| 26.6.26 | New Linux pedit COW Exploit Enables Root Access by Poisoning Cached Binaries | A flaw in the Linux kernel's traffic-control subsystem can let a local unprivileged user gain root on affected systems. CVE-2026-46331 , | Vulnerebility | The Hacker News |
| 26.6.26 | New DirtyClone Linux Kernel Flaw Lets Local Users Gain Root via Cloned Packets | DirtyClone is a new Linux kernel privilege escalation in the DirtyFrag family. JFrog Security Research published a working exploit | Vulnerebility | The Hacker News |
| 23.6.26 | CVE-2024-40766: The Patch Fixed the Bug. Nobody Fixed the Configuration. | In August 2024 SonicWall published advisory SNWLID-2024-0015 for CVE-2024-40766. It is an improper access control vulnerability in SonicOS. CVSS 9.3. | Vulnerebility | SANS |
| 22.6.26 | Researchers Detail DifyTap Flaws in Dify That Could Expose AI Chats Across Tenants | Cybersecurity researchers have disclosed details of four vulnerabilities in Dify , an open-source agentic workflow platform with more than 146,000 | Vulnerebility | The Hacker News |
| 22.6.26 | 29-Year-Old Squid Proxy Bug 'Squidbleed' Can Leak Cleartext HTTP Requests | A heap over-read in the Squid web proxy can leak another user's cleartext HTTP request, including any credentials or session tokens it carries, to | Vulnerebility | The Hacker News |
| 21.6.26 | F5 issues out-of-band patches for critical NGINX vulnerabilities | Cybersecurity company F5 has released out-of-band security updates to address multiple NGINX web server vulnerabilities, including two critical-severity flaws that could allow attackers to execute code on vulnerable systems. | Vulnerebility | BleepingComputer |
| 21.6.26 | CISA orders feds to patch max severity Joomla plugin flaw by Friday | The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch a maximum-severity flaw in the Widget Factory Joomla Content Editor (JCE) plugin that is being actively exploited in the wild. | Vulnerebility | BleepingComputer |
| 21.6.26 | Microsoft working on Defender patch for RoguePlanet zero-day | Microsoft confirmed that it's working on a security patch for a Defender zero-day vulnerability named "RoguePlanet," disclosed one week ago. | Vulnerebility | BleepingComputer |
| 20.6.26 | Cisco fixes SD-WAN vManage flaw exploited in zero-day attacks | Cisco has released security updates to address a vulnerability in the Catalyst SD-WAN Manager, tracked as CVE-2026-20262, that was exploited in attacks to escalate to root privileges. | Vulnerebility | BleepingComputer |
| 19.6.26 | Apple Patches Beats Studio Buds Flaw Letting Nearby Attackers Spy via Microphone | Apple has updated its Beats Studio Buds wireless earbuds to patch a high-severity vulnerability that could be exploited by nearby hackers to | Vulnerebility | The Hacker News |
| 19.6.26 | F5 Patches Two Critical NGINX Open Source Flaws Enabling Remote Code Execution | F5 has released security updates to address two critical security flaws in NGINX Open Source that could be exploited to achieve code execution on | Vulnerebility | The Hacker News |
| 18.6.26 | Microsoft Confirms RoguePlanet Defender Zero-Day, Says Patch is in Development | Microsoft has formally disclosed that it's working to release a patch to address a Defender zero-day codenamed RoguePlanet . The vulnerability | Vulnerebility | The Hacker News |
| 17.6.26 | CISA Warns of Actively Exploited Joomla JCE Flaw Allowing PHP Code Execution | The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a maximum-severity security flaw impacting Widget Factory Joomla Content Editor (JCE) to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. | Vulnerebility | The Hacker News |
| 14.6.26 | phpBB forum fixes auth bypass bug lurking for a decade | A 10-year-old authentication bypass vulnerability discovered in the phpBB forum software allows an attacker to log in as any user, including administrators. | Vulnerebility | BleepingComputer |
| 14.6.26 | CISA tells govt agencies to patch critical exploited flaws in 3 days | The U.S. Cybersecurity and Infrastructure Security Agency (CISA) announced a new Binding Operational Directive, 26-04, that prioritizes security updates for Federal Civilian Executive Branch (FCEB) agencies. | Vulnerebility | BleepingComputer |
| 14.6.26 | Max severity Ivanti Sentry vulnerability now exploited in attacks | Attackers are now targeting a recently patched maximum-severity flaw in Ivanti Sentry, enabling them to execute code with root privileges on Internet-exposed secure mobile gateways. | Vulnerebility | BleepingComputer |
| 14.6.26 | Path traversal flaw in AI dev platform Langflow exploited in attacks | Attackers are actively exploiting CVE-2026-5027, a high-severity path traversal vulnerability in the AI development platform Langflow, to write arbitrary files on exposed servers. | Vulnerebility | BleepingComputer |
| 14.6.26 | Ivanti: Max severity Sentry flaw allows code execution as root | Ivanti has patched two critical vulnerabilities in its Sentry secure mobile gateway solution, including a maximum-severity flaw that enables remote attackers to execute code with root privileges. | Vulnerebility | BleepingComputer |
| 14.6.26 | SAP fixes critical flaws in NetWeaver and Commerce Cloud | SAP has released fixes for 15 vulnerabilities as part of its June 2026 Security Patch package, including four critical-severity flaws affecting SAP NetWeaver and SAP Commerce Cloud. | Vulnerebility | BleepingComputer |
| 13.6.26 | New Veeam vulnerability exposes backup servers to RCE attacks | Veeam has released security updates to patch a critical Backup & Replication security flaw that can be exploited to gain remote code execution (RCE) on domain-joined backup servers. | Vulnerebility | BleepingComputer |
| 13.6.26 | Gogs patches critical zero-day enabling remote code execution | Gogs has patched a critical security zero-day flaw that can allow attackers to compromise Internet-facing instances and access any repositories (including private ones). | Vulnerebility | BleepingComputer |
| 13.6.26 | Critical UniFi OS bug lets hackers gain root without authentication | Attackers can chain three already fixed vulnerabilities in the Ubiquiti UniFi OS server to execute remote code with root privileges and without authentication. | Vulnerebility | BleepingComputer |
| 13.6.26 | Critical Splunk Enterprise Flaw Lets Attackers Run Code Without Authentication | Splunk has released security updates to address a critical security flaw in Splunk Enterprise that could be exploited to conduct unauthenticated file operations and even remote code execution. The vulnerability, tracked as | Vulnerebility | The Hacker News |
| 10.6.26 | Ivanti, Fortinet, and SAP Release Patches for Multiple Critical Vulnerabilities | Fortinet, Ivanti, and SAP have released security updates to address multiple critical security vulnerabilities that could result in arbitrary code | Vulnerebility | The Hacker News |
| 10.6.26 | Unpatched Langflow Flaw CVE-2026-5027 Exploited for Unauthenticated RCE | A high-severity unpatched security flaw in Langflow, an open-source low-code platform to build artificial intelligence (AI) applications, has come | Vulnerebility | The Hacker News |
| 10.6.26 | CISA Adds Cisco, Chrome, and Arista Flaws to KEV Catalog Amid Active Exploitation | The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added three new vulnerabilities to its Known Exploited | Vulnerebility | The Hacker News |
| 10.6.26 | Microsoft Defender RoguePlanet Zero-Day Grants SYSTEM Access on Updated Windows | The anonymous security researcher going by the name Chaotic Eclipse (aka Nightmare-Eclipse) has released a proof-of-concept (PoC) exploit for | Vulnerebility | The Hacker News |
| 10.6.26 | Six Proto6 Vulnerabilities in protobuf.js Expose Node.js Apps to RCE and DoS | Cybersecurity researchers have flagged half a dozen vulnerabilities in protobuf.js, a JavaScript and TypeScript implementation of Protocol | Vulnerebility | The Hacker News |
| 10.6.26 | Veeam Backup & Replication RCE Flaw Lets Domain Users Run Remote Code | Veeam has released security patches to address a critical flaw in its Backup & Replication software that could result in remote code | Vulnerebility | The Hacker News |
| 9.6.26 | Old WinRAR Flaw Fuels Attacks on Ukraine: How Unmanaged Software Keeps the Door Open | Two separate Russia-aligned campaigns are still exploiting the WinRAR flaw CVE-2025-8088 against Ukrainian organizations nearly a year after it was patched, showing how unmanaged software keeps an exploited entry point open long after the fix ships. | Vulnerebility | Trend Micro |
| 7.6.26 | Critical Everest Forms Pro flaw exploited to take over WordPress sites | Hackers are actively exploiting a critical vulnerability (CVE-2026-3300) in the Everest Forms Pro plugin, which lets them take complete control of a WordPress website. | Vulnerebility | BleepingComputer |
| 7.6.26 | Acer working to patch max severity zero-days in Wave 7 routers | Acer is working to address two maximum-severity zero-day vulnerabilities affecting its Wave 7 mesh routers. | Vulnerebility | BleepingComputer |
| 7.6.26 | VS Code zero-day lets hackers steal GitHub tokens in one click | A security researcher has released exploit code for a Visual Studio Code (VS Code) zero-day vulnerability that allows attackers to steal GitHub authentication tokens by tricking users into clicking a link. | Vulnerebility | BleepingComputer |
| 6.6.26 | Cisco Catalyst SD-WAN Manager CVE-2026-20245 Flaw Actively Exploited – No Patch Available | Cisco has warned that a high-severity security flaw impacting Catalyst SD-WAN Manager has come under active exploitation. The vulnerability, | Vulnerebility | The Hacker News |
| 5.6.26 | MiniPlasma: detecting exploitation of a critical unpatched Windows vulnerability | Over the past two months, the anonymous researcher Nightmare Eclipse has publicly released six Windows vulnerabilities complete with ready-to-use exploits, without prior coordination with Microsoft. The most critical of these is MiniPlasma. | Vulnerebility | SECURELIST |
| 5.6.26 | Cisco Patches CVE-2026-20230 in Unified CM as Exploit Code Goes Public | Cisco has patched a bug in Unified Communications Manager that lets an unauthenticated attacker on the network write files to the box and, | Vulnerebility | The Hacker News |
| 3.6.26 | Autonomous AI Tool Finds 2-Year-Old RCE Flaw in Redis (CVE-2026-23479) | Redis has patched a use-after-free in its blocking-client code that lets an authenticated user run arbitrary OS commands on the machine hosting | Vulnerebility | The Hacker News |
| 3.6.26 | Outlook Vulnerability Discovery and New Ways to Leak NTLM Hashes | Varonis Threat Labs discovered a new Outlook exploit and three new ways to access NTLM v2 hashed passwords. | Vulnerebility | VARONIS |
| 3.6.26 | Unpatched Windows Search URI Vulnerability Lets Attackers Steal NTLMv2 Hashes | Cybersecurity researchers have disclosed details of an unpatched issue that could be exploited to disclose a user's NTLMv2 hash to the attacker. | Vulnerebility | The Hacker News |
| 3.6.26 | Oracle WebLogic CVE-2024-21182 Added to KEV Catalog After Active Exploitation | The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a high-severity security flaw impacting Oracle WebLogic | Vulnerebility | The Hacker News |
| 31.5.26 | Palo Alto GlobalProtect VPN auth bypass flaw now exploited in attacks | Palo Alto Networks is warning that hackers are now exploiting a PAN-OS GlobalProtect authentication bypass flaw, tracked as CVE-2026-0257, in attacks attempting to breach corporate networks. | Vulnerebility | BleepingComputer |
| 31.5.26 | New CIFSwitch Linux flaw gives root on multiple distributions | A newly discovered local privilege escalation vulnerability dubbed 'CIFSwitch' in the Linux kernel could allow attackers to forge CIFS authentication key descriptions, abuse the kernel's key request mechanism, and gain root privileges. | Vulnerebility | BleepingComputer |
| 31.5.26 | New Gogs zero-day flaw lets hackers get remote code execution | An unpatched zero-day vulnerability in the Gogs self-hosted Git service can allow attackers to gain remote code execution (RCE) on Internet-facing instances. | Vulnerebility | BleepingComputer |
| 30.5.26 | PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation | Palo Alto Networks has warned that a recently disclosed medium-severity security flaw impacting PAN-OS and Prisma Access has come under | Vulnerebility | The Hacker News |
| 30.5.26 | ChatGPhish Vulnerability Turns ChatGPT Web Summaries Into a Phishing Surface | Cybersecurity researchers have disclosed details of a vulnerability in OpenAI ChatGPT that leverages the artificial intelligence (AI) assistant's | Vulnerebility | The Hacker News |
| 30.5.26 | KnowledgeDeliver flaw exploited as a zero-day to install web shells | Hackers exploited a critical zero-day vulnerability in a server running the KnowledgeDeliver learning management system (LMS) to deploy the Godzilla web shell. | Vulnerebility | BleepingComputer |
| 30.5.26 | Ghost CMS SQL injection flaw exploited in large-scale ClickFix campaign | A large-scale campaign is exploiting a critical SQL injection vulnerability (CVE-2026-26980) in Ghost CMS to inject malicious JavaScript code that triggers ClickFix attack flows. | Vulnerebility | BleepingComputer |
| 29.5.26 | Authenticated RCE via Argument Injection in Gogs (NOT FIXED) | Rapid7 Labs discovered a critical argument injection (CWE-88) vulnerability in Gogs, a popular open-source self-hosted Git service. Rapid7 Labs scores this vulnerability as CVSSv4 9.4 (Critical). | Vulnerebility | RAPID7 |
| 29.5.26 | Kimsuky Deploys HTTPSpy, Expands Arsenal with HelloDoor and VS Code Tunnels | The North Korean state-sponsored threat actor known as Kimsuky (aka Velvet Chollima) has been attributed to a fresh set of cyber attacks | Vulnerebility | The Hacker News |
| 29.5.26 | Critical Gogs RCE Vulnerability Lets Any Authenticated User Execute Arbitrary Code | A critical security vulnerability has been disclosed in Gogs, a popular open-source self-hosted Git service, that allows an authenticated user to | Vulnerebility | The Hacker News |
| 28.5.26 | Threat Actors Exploit Critical FortiClient EMS Flaw to Deploy Credential Stealer | Threat actors are continuing to exploit a critical, now-patched security flaw impacting FortiClient Endpoint Management Server (EMS) | Vulnerebility | The Hacker News |
| 28.5.26 | Microsoft Slams Public Zero-Day Disclosures Amid GitHub Researcher Account Removal | Microsoft has come out strongly in favor of Coordinated Vulnerability Disclosure (CVD), urging the research community to share their findings | Vulnerebility | The Hacker News |
| 27.5.26 | Gitea Vulnerability Exposes Private Container Images without Authentication | Cybersecurity researchers have disclosed a security flaw in Gitea, an open-source, self-hosted platform for version control, that allows | Vulnerebility | The Hacker News |
| 26.5.26 | Microsoft Patches SharePoint RCE Flaw CVE-2026-45659 Across Server Versions | Microsoft has rolled out updates to fix a remote code execution vulnerability impacting SharePoint that could be exploited by bad actors | Vulnerebility | The Hacker News |
| 24.5.26 | Drupal: Critical SQL injection flaw now targeted in attacks | Drupal is warning that hackers are attempting to exploit a "highly critical" SQL injection vulnerability announced earlier this week. | Vulnerebility | BleepingComputer |
| 24.5.26 | Ubiquiti patches three max severity UniFi OS vulnerabilities | Ubiquiti has released security updates to patch three maximum severity vulnerabilities in UniFi OS that can be exploited by remote attackers without privileges. | Vulnerebility | BleepingComputer |
| 24.5.26 | Google accidentally exposed details of unfixed Chromium flaw | Google has accidentally leaked details about an unfixed issue in Chromium that keeps JavaScript running in the background even when the browser is closed, allowing remote code execution on the device. | Vulnerebility | BleepingComputer |
| 24.5.26 | Max severity Cisco Secure Workload flaw gives Site Admin privileges | Cisco has released security updates to address a maximum-severity vulnerability in Secure Workload that allows attackers to gain Site Admin privileges. | Vulnerebility | BleepingComputer |
| 24.5.26 | Hackers bypass SonicWall VPN MFA due to incomplete patching | Threat actors brute-forced VPN credentials and bypassed multi-factor authentication (MFA) on SonicWall Gen6 SSL-VPN appliances to deploy tools used in ransomware attacks. | Vulnerebility | BleepingComputer |
| 23.5.26 | Drupal critical update to fix bug with high exploitation risk | Drupal has announced a "core security release" scheduled for later today, warning that threat actors might develop exploits within hours of the update disclosure. | Vulnerebility | BleepingComputer |
| 22.5.26 | CISA Adds Exploited Langflow and Trend Micro Apex One Vulnerabilities to KEV | The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added two security flaws impacting Langflow and Trend Micro | Vulnerebility | The Hacker News |
| 22.5.26 | Cisco Patches CVSS 10.0 Secure Workload REST API Flaw Enabling Data Access | Cisco has rolled out updates for a maximum-severity security flaw impacting Secure Workload that could allow an unauthenticated, remote | Vulnerebility | The Hacker News |
| 22.5.26 | Exploit available for new DirtyDecrypt Linux root escalation flaw | A recently patched local privilege escalation vulnerability in the Linux kernel's rxgk module now has a proof-of-concept exploit that allows attackers to gain root access on some Linux systems. | Vulnerebility | BleepingComputer |
| 22.5.26 | New Windows 'MiniPlasma' zero-day exploit gives SYSTEM access, PoC released | A cybersecurity researcher has released a proof-of-concept exploit for a Windows privilege escalation zero-day dubbed "MiniPlasma" that lets attackers gain SYSTEM privileges on fully patched Windows systems. | Vulnerebility | BleepingComputer |
| 22.5.26 | Microsoft rejects critical Azure vulnerability report, no CVE issued | A security researcher claims Microsoft quietly fixed an Azure Backup for AKS vulnerability after rejecting his report, and without issuing a CVE. Microsoft disputes the claim, telling BleepingComputer the behavior was expected and that "no product changes were made," despite the researcher documenting a silent fix. | Vulnerebility | BleepingComputer |
| 21.5.26 | 9-Year-Old Linux Kernel Flaw Enables Root Command Execution on Major Distros | Cybersecurity researchers have disclosed details of a vulnerability in the Linux kernel that remained undetected for nine years. The vulnerability, | Vulnerebility | The Hacker News |
| 21.5.26 | Highly Critical Drupal Core Flaw Exposes PostgreSQL Sites to RCE Attacks | Drupal has released security updates for a "highly critical" security vulnerability in Drupal Core that could be exploited by attackers to | Vulnerebility | The Hacker News |
| 19.5.26 | DirtyDecrypt PoC Released for Linux Kernel CVE-2026-31635 LPE Vulnerability | Proof-of-concept (PoC) exploit code has now been released for a recently patched security flaw in the Linux kernel that could allow for local | Vulnerebility | The Hacker News |
| 19.5.26 | SEPPMail Secure E-Mail Gateway Vulnerabilities Enable RCE and Mail Traffic Access | Critical security vulnerabilities have been disclosed in SEPPMail Secure E-Mail Gateway , an enterprise-grade email security solution, that could | Vulnerebility | The Hacker News |
| 18.5.26 | Ivanti, Fortinet, SAP, VMware, n8n Patch RCE, SQL Injection, Privilege Escalation Flaws | Ivanti, Fortinet, n8n, SAP, and VMware have released security fixes for various vulnerabilities that could be exploited by bad actors to bypass | Vulnerebility | The Hacker News |
| 18.5.26 | MiniPlasma Windows 0-Day Enables SYSTEM Privilege Escalation on Fully Patched Systems | Chaotic Eclipse, the security researcher behind the recently disclosed Windows flaws, YellowKey and GreenPlasma , has released a proof-of- | Vulnerebility | The Hacker News |
| 18.5.26 | NGINX CVE-2026-42945 Exploited in the Wild, Causing Worker Crashes and Possible RCE | A newly disclosed security flaw impacting NGINX Plus and NGINX Open has come under active exploitation in the wild, days after its public | Vulnerebility | The Hacker News |
| 17.5.26 | Cisco warns of new critical SD-WAN flaw exploited in zero-day attacks | Cisco is warning that a critical Catalyst SD-WAN Controller authentication bypass flaw, tracked as CVE-2026-20182, was actively exploited in zero-day attacks that allowed attackers to gain administrative privileges on compromised devices. | Vulnerebility | BleepingComputer |
| 17.5.26 | 18-year-old NGINX vulnerability allows DoS, potential RCE | An 18-year-old flaw in the NGINX open-source web server, discovered using an autonomous scanning system, can be exploited for denial of service and, under certain conditions, remote code execution. | Vulnerebility | BleepingComputer |
| 17.5.26 | New Fragnesia Linux flaw lets attackers gain root privileges | Linux distros are rolling out patches for a new high-severity kernel privilege escalation vulnerability (known as Fragnasia and tracked as CVE-2026-46300) that allows attackers to run malicious code as root. | Vulnerebility | BleepingComputer |
| 17.5.26 | New critical Exim mailer flaw allows remote code execution | A critical vulnerability affecting certain configurations of the Exim open-source mail transfer agent could be exploited by an unauthenticated remote attacker to execute arbitrary code. | Vulnerebility | BleepingComputer |
| 17.5.26 | Windows BitLocker zero-day gives access to protected drives, PoC released | A cybersecurity researcher has published proof-of-concept (PoC) exploits for two unpatched Microsoft Windows vulnerabilities named YellowKey and GreenPlasma, which are a BitLocker bypass and a privilege-escalation flaw. | Vulnerebility | BleepingComputer |
| 16.5.26 | Fortinet warns of critical RCE flaws in FortiSandbox and FortiAuthenticator | Fortinet has released security patches for two critical vulnerabilities in FortiSandbox and FortiAuthenticator that could enable attackers to run commands or arbitrary code. | Vulnerebility | BleepingComputer |
| 15.5.26 | On-Prem Microsoft Exchange Server CVE-2026-42897 Exploited via Crafted Email | Microsoft has disclosed a new security vulnerability impacting on-premise versions of Exchange Server that it said has come under active | Vulnerebility | The Hacker News |
| 15.5.26 | CISA Adds Cisco SD-WAN CVE-2026-20182 to KEV After Admin Access Exploits | The U.S.Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a newly disclosed vulnerability impacting Cisco Catalyst | Vulnerebility | The Hacker News |
| 15.5.26 | Cisco Catalyst SD-WAN Controller Auth Bypass Actively Exploited to Gain Admin Access | Cisco has released updates to address a maximum-severity authentication bypass flaw in Catalyst SD-WAN Controller that it said has | Vulnerebility | The Hacker News |
| 14.5.26 | Windows Zero-Days Expose BitLocker Bypasses And CTFMON Privilege Escalation | An anonymous cybersecurity researcher who disclosed three Microsoft Defender vulnerabilities has returned with two more zero-days involving a | Vulnerebility | The Hacker News |
| 14.5.26 | New Fragnesia Linux Kernel LPE Grants Root Access via Page Cache Corruption | Details have emerged about a new variant of the recent Dirty Frag Linux local privilege escalation (LPE) vulnerability that allows local attackers to | Vulnerebility | The Hacker News |
| 14.5.26 | 18-Year-Old NGINX Rewrite Module Flaw Enables Unauthenticated RCE | Cybersecurity researchers have disclosed multiple security vulnerabilities impacting NGINX Plus and NGINX Open, including a critical flaw that | Vulnerebility | The Hacker News |
| 14.5.26 | SAP fixes critical vulnerabilities in Commerce Cloud and S/4HANA | SAP has released the May 2026 security updates addressing 15 vulnerabilities across multiple products, including two critical flaws in the Commerce Cloud enterprise-grade e-commerce platform and the S/4HANA ERP suite. | Vulnerebility | BleepingComputer |
| 14.5.26 | Instructure confirms hackers used Canvas flaw to deface portals | Education technology giant Instructure has confirmed that a security vulnerability allowed hackers to modify Canvas login portals and leave an extortion message. | Vulnerebility | BleepingComputer |
| 13.5.26 | New Exim BDAT Vulnerability Exposes GnuTLS Builds to Potential Code Execution | Exim has released security updates to address a severe security issue affecting certain configurations that could enable memory corruption and | Vulnerebility | The Hacker News |
| 12.5.26 | cPanel CVE-2026-41940 Under Active Exploitation to Deploy Filemanager Backdoor | A threat actor named Mr_Rot13 has been attributed to the exploitation of a recently disclosed critical cPanel flaw to deploy a backdoor codenamed | Vulnerebility | The Hacker News |
| 10.5.26 | Ollama Out-of-Bounds Read Vulnerability Allows Remote Process Memory Leak | Cybersecurity researchers have disclosed a critical security vulnerability in Ollama that, if successfully exploited, could allow a remote, | Vulnerebility | The Hacker News |
| 10.5.26 | New Linux 'Dirty Frag' zero-day gives root on all major distros | A new Linux zero-day exploit, named Dirty Frag, allows local attackers to gain root privileges on most major Linux distributions with a single command. | Vulnerebility | BleepingComputer |
| 10.5.26 | Critical vm2 sandbox bug lets attackers execute code on hosts | A critical vulnerability in the popular Node.js sandboxing library vm2 allows escaping the sandbox and executing arbitrary code on the host system. | Vulnerebility | BleepingComputer |
| 10.5.26 | New Cisco DoS flaw requires manual reboot to revive devices | Cisco patched a Crosswork Network Controller and Network Services Orchestrator denial-of-service vulnerability that requires manually rebooting targeted systems for recovery. | Vulnerebility | BleepingComputer |
| 9.5.26 | Another Universal Linux Local Privilege Escalation (LPE) Vulnerability: Dirty Frag | Less than two weeks after the public disclosure of the Copy Fail vulnerability (CVE-2026-31431), another local privilege escalation (LPE) vulnerability in the Linux kernel has been revealed. | Vulnerebility | SANS |
| 9.5.26 | cPanel, WHM Release Fixes for Three New Vulnerabilities — Patch Now | cPanel has released updates to address three vulnerabilities in cPanel and Web Host Manager (WHM) that could be exploited to achieve | Vulnerebility | The Hacker News |
| 9.5.26 | Weaver E-cology critical bug exploited in attacks since March | Hackers have been exploiting a critical vulnerability (CVE-2026-22679) in the Weaver E-cology office automation since mid-March to run discovery commands. | Vulnerebility | BleepingComputer |
| 9.5.26 | Progress warns of critical MOVEit Automation auth bypass flaw | Progress Software warned customers to patch a critical authentication bypass vulnerability in its MOVEit Automation enterprise-grade managed file transfer (MFT) application. | Vulnerebility | BleepingComputer |
| 7.5.26 | vm2 Node.js Library Vulnerabilities Enable Sandbox Escape and Arbitrary Code Execution | A dozen critical security vulnerabilities have been disclosed in the vm2 Node.js library that could be exploited by bad actors to break out of the | Vulnerebility | The Hacker News |
| 6.5.26 | Critical Apache HTTP/2 Flaw (CVE-2026-23918) Enables DoS and Potential RCE | The Apache Software Foundation (ASF) has released security updates to address several security vulnerabilities in the HTTP Server, including a | Vulnerebility | The Hacker News |
| 5.5.26 | Weaver E-cology RCE Flaw CVE-2026-22679 Actively Exploited via Debug API | A critical security vulnerability in Weaver (Fanwei) E-cology , an enterprise office automation (OA) and collaboration platform, has come under | Vulnerebility | The Hacker News |
| 5.5.26 | Progress Patches Critical MOVEit Automation Bug Enabling Authentication Bypass | Progress Software has released updates to address two security flaws in MOVEit Automation, including a critical bug that could result in an | Vulnerebility | The Hacker News |
| 4.5.26 | Critical cPanel Vulnerability Weaponized to Target Government and MSP Networks | A previously unknown threat actor has been observed targeting government and military entities in Southeast Asia, alongside a smaller | Vulnerebility | The Hacker News |
| 3.5.26 | New Linux ‘Copy Fail’ flaw gives hackers root on major distros | An exploit has been published for a local privilege escalation vulnerability dubbed "Copy Fail" that impacts Linux kernels released since 2017, allowing an unprivileged local attacker to gain root permissions. | Vulnerebility | |
| 2.5.26 | cPanel, WHM emergency update fixes critical auth bypass bug | A critical vulnerability affecting all but the latest versions of cPanel and the WebHost Manager (WHM) dashboard could be exploited to obtain access to the control panel without authentication. | Vulnerebility | BleepingComputer |
| 2.5.26 | GitHub fixes RCE flaw that gave access to millions of private repos | In early March, GitHub patched a critical remote code execution vulnerability (CVE-2026-3854) that could have allowed attackers to access millions of private repositories. | Vulnerebility | BleepingComputer |
| 30.4.26 | New Linux 'Copy Fail' Vulnerability Enables Root Access on Major Distributions | Cybersecurity researchers have disclosed details of a Linux local privilege escalation (LPE) flaw that could allow an unprivileged local user to obtain root. | Vulnerebility | The Hacker News |
| 29.4.26 | Critical cPanel Authentication Vulnerability Identified — Update Your Server Immediately | cPanel has released security updates to address a security issue impacting various authentication paths that could allow an attacker to obtain access to | Vulnerebility | The Hacker News |
| 29.4.26 | LiteLLM CVE-2026-42208 SQL Injection Exploited within 36 Hours of Disclosure | In yet another instance of threat actors quickly jumping on the exploitation bandwagon, a newly disclosed critical security flaw in BerriAI's LiteLLM Python | Vulnerebility | The Hacker News |
| 29.4.26 | Researchers Discover Critical GitHub CVE-2026-3854 RCE Flaw Exploitable via Single Git Push | Cybersecurity researchers have disclosed details of a critical security vulnerability impacting GitHub.com and GitHub Enterprise Server that could | Vulnerebility | The Hacker News |
| 28.4.26 | Critical Unpatched Flaw Leaves Hugging Face LeRobot Open to Unauthenticated RCE | Cybersecurity researchers have disclosed details of a critical security flaw impacting LeRobot , Hugging Face's open-source robotics platform with nearly | Vulnerebility | The Hacker News |
| 28.4.26 | Microsoft Patches Entra ID Role Flaw That Enabled Service Principal Takeover | An administrative role meant for artificial intelligence (AI) agents within Microsoft Entra ID could enable privilege escalation and identity takeover | Vulnerebility | The Hacker News |
| s28.4.26 | Microsoft Confirms Active Exploitation of Windows Shell CVE-2026-32202 | Microsoft on Monday revised its advisory for a now-patched, high-severity security flaw impacting Windows Shell to acknowledge that it has been | Vulnerebility | The Hacker News |
| 26.4.26 | Over 10,000 Zimbra servers vulnerable to ongoing XSS attacks | Over 10,000 Zimbra Collaboration Suite (ZCS) instances exposed online are vulnerable to ongoing attacks exploiting a cross-site scripting (XSS) security flaw. | Vulnerebility | BleepingComputer |
| 25.4.26 | Microsoft releases emergency patches for critical ASP.NET flaw | Microsoft has released out-of-band (OOB) security updates to patch a critical ASP.NET Core privilege escalation vulnerability. | Vulnerebility | BleepingComputer |
| 25.4.26 | Over 1,300 Microsoft SharePoint servers vulnerable to spoofing attacks | Over 1,300 Microsoft SharePoint servers exposed online remain unpatched against a spoofing vulnerability that was exploited as a zero-day and is still being abused in ongoing attacks. | Vulnerebility | |
| 24.4.26 | LMDeploy CVE-2026-33626 Flaw Exploited Within 13 Hours of Disclosure | A high-severity security flaw in LMDeploy , an open-source toolkit for compressing, deploying, and serving LLMs, has come under active exploitation | Vulnerebility | The Hacker News |
| 22.4.26 | Microsoft Patches Critical ASP.NET Core CVE-2026-40372 Privilege Escalation Bug | Microsoft has released out-of-band updates to address a security vulnerability in ASP.NET Core that could allow an attacker to escalate privileges. The | Vulnerebility | The Hacker News |
| 22.4.26 | 22 BRIDGE:BREAK Flaws Expose Thousands of Lantronix and Silex Serial-to-IP Converters | Cybersecurity researchers have identified 22 new vulnerabilities in popular models of serial-to-IP converters from Lantronix and Silex that could be | Vulnerebility | The Hacker News |
| 21.4.26 | Google Patches Antigravity IDE Flaw Enabling Prompt Injection Code Execution | Cybersecurity researchers have discovered a vulnerability in Google's agentic integrated development environment (IDE), Antigravity, that could be exploited | Vulnerebility | The Hacker News |
| 21.4.26 | SGLang CVE-2026-5760 (CVSS 9.8) Enables RCE via Malicious GGUF Model Files | A critical security vulnerability has been disclosed in SGLang that, if successfully exploited, could result in remote code execution on susceptible | Vulnerebility | The Hacker News |
| 19.4.26 | Critical flaw in Protobuf library enables JavaScript code execution | Proof-of-concept exploit code has been published for a critical remote code execution flaw in protobuf.js, a widely used JavaScript implementation of Google's Protocol Buffers. | Vulnerebility | BleepingComputer |
| 19.4.26 | Cisco says critical Webex Services flaw requires customer action | Cisco has released security updates to patch four critical vulnerabilities, including a fixed improper certificate validation flaw in the company's cloud-based Webex Services platform that requires further customer action. | Vulnerebility | |
| 18.4.26 | Critical flaw in wolfSSL library enables forged certificate use | A critical vulnerability in the wolfSSL SSL/TLS library can weaken security via improper verification of the hash algorithm or its size when checking Elliptic Curve Digital Signature Algorithm (ECDSA) signatures. | Vulnerebility | BleepingComputer |
| 18.4.26 | Adobe rolls out emergency fix for Acrobat, Reader zero-day flaw | Adobe has released an emergency security update for Acrobat Reader to fix a vulnerability, tracked as CVE-2026-34621, that has been exploited in zero-day attacks since at least December. | Vulnerebility | |
| 18.4.26 | Critical Marimo pre-auth RCE flaw now under active exploitation | A critical pre-authentication remote code execution (RCE) vulnerability in Marimo is now under active exploitation, leveraged for credential theft. | Vulnerebility | BleepingComputer |
| 17.4.26 | NIST Limits CVE Enrichment After 263% Surge in Vulnerability Submissions | The National Institute of Standards and Technology (NIST) has announced changes to the way it handles cybersecurity vulnerabilities and exposures | Vulnerebility | The Hacker News |
| 17.4.26 | Apache ActiveMQ CVE-2026-34197 Added to CISA KEV Amid Active Exploitation | A recently disclosed high-severity security flaw in Apache ActiveMQ Classic has come under active exploitation in the wild, per the U.S. Cybersecurity and | Vulnerebility | The Hacker News |
| 16.4.26 | Cisco Patches Four Critical Identity Services, Webex Flaws Enabling Code Execution | Cisco has announced patches to address four critical security flaws impacting Identity Services and Webex Services that could result in arbitrary code | Vulnerebility | The Hacker News |
| 15.4.26 | Actively Exploited nginx-ui Flaw (CVE-2026-33032) Enables Full Nginx Server Takeover | A recently disclosed critical security flaw impacting nginx-ui, an open-source, web-based Nginx management tool, has come under active exploitation in | Vulnerebility | The Hacker News |
| 15.4.26 | April Patch Tuesday Fixes Critical Flaws Across SAP, Adobe, Microsoft, Fortinet, and More | A number of critical vulnerabilities impacting products from Adobe, Fortinet, Microsoft, and SAP have taken center stage in April's Patch Tuesday releases. | Vulnerebility | The Hacker News |
| 15.4.26 | New PHP Composer Flaws Enable Arbitrary Command Execution — Patches Released | Two high-severity security vulnerabilities have been disclosed in Composer, a package manager for PHP, that, if successfully exploited, could result in | Vulnerebility | The Hacker News |
| 14.4.26 | ShowDoc RCE Flaw CVE-2025-0520 Actively Exploited on Unpatched Servers | A critical security vulnerability impacting ShowDoc , a document management and collaboration service popular in China, has come under active exploitation | Vulnerebility | The Hacker News |
| 13.4.26 | Adobe Patches Actively Exploited Acrobat Reader Flaw CVE-2026-34621 | Adobe has released emergency updates to fix a critical security flaw in Acrobat Reader that has come under active exploitation in the wild. The | Vulnerebility | The Hacker News |
| 12.4.26 | Analysis of one billion CISA KEV remediation records exposes limits of human-scale security | Analysis of 1 billion CISA KEV remediation records reveal a breaking point for human-scale security. Qualys shows most critical flaws are exploited before defenders can patch them. | Vulnerebility | |
| 12.4.26 | CISA orders feds to patch exploited Ivanti EPMM flaw by Sunday | CISA has given U.S. government agencies four days to secure their systems against a critical-severity vulnerability in Ivanti Endpoint Manager Mobile (EPMM) that has been exploited in attacks since January. | Vulnerebility | |
| 12.4.26 | 13-year-old bug in ActiveMQ lets hackers remotely execute commands | Security researchers discovered a remote code execution (RCE) vulnerability in Apache ActiveMQ Classic that has gone undetected for 13 years and could be exploited to execute arbitrary commands | Vulnerebility | |
| 8.4.26 | Docker CVE-2026-34040 Lets Attackers Bypass Authorization and Gain Host Access | A high-severity security vulnerability has been disclosed in Docker Engine that could permit an attacker to bypass authorization plugins ( AuthZ ) under | Vulnerebility | The Hacker News |
| 6.4.26 | New FortiClient EMS flaw exploited in attacks, emergency patch released | Fortinet has released an emergency weekend security update for a new critical FortiClient Enterprise Management Server (EMS) vulnerability that is actively exploited in attacks. | Vulnerebility | BleepingComputer |
| 6.4.26 | Hackers exploit React2Shell in automated credential theft campaign | Hackers are running a large-scale campaign to steal credentials in an automated way after exploiting React2Shell (CVE-2025-55182) in vulnerable Next.js apps. | Vulnerebility | |
| 6.4.26 | New Progress ShareFile flaws can be chained in pre-auth RCE attacks | Two vulnerabilities in Progress ShareFile, an enterprise-grade secure file transfer solution, can be chained to enable unauthenticated file exfiltration from affected environments. | Vulnerebility | |
| 5.4.26 | Fortinet Patches Actively Exploited CVE-2026-35616 in FortiClient EMS | Fortinet has released out-of-band patches for a critical security flaw impacting FortiClient EMS that it said has been exploited in the wild. The vulnerability, | Vulnerebility | The Hacker News |
| 5.4.26 | Critical Cisco IMC auth bypass gives attackers Admin access | Cisco has patched several critical and high-severity vulnerabilities, including an Integrated Management Controller (IMC) authentication bypass that enables attackers to gain Admin access. | Vulnerebility | |
| 5.4.26 | Over 14,000 F5 BIG-IP APM instances still exposed to RCE attacks | Internet security watchdog Shadowserver has found over 14,000 BIG-IP APM instances exposed online amid ongoing attacks exploiting a critical-severity remote code execution (RCE) vulnerability. | Vulnerebility | |
| 4.4.26 | GIGABYTE Control Center vulnerable to arbitrary file write flaw | The GIGABYTE Control Center is vulnerable to an arbitrary file-write flaw that could allow a remote, unauthenticated attacker to access files on vulnerable hosts. | Vulnerebility | |
| 4.4.26 | Critical Citrix NetScaler memory flaw actively exploited in attacks | Hackers are exploiting a critical severity vulnerability, tracked as CVE-2026-3055, in Citrix NetScaler ADC and NetScaler Gateway appliances to obtain sensitive data. | Vulnerebility | BleepingComputer |
| 2.4.26 | Cisco Patches 9.8 CVSS IMC and SSM Flaws Allowing Remote System Compromise | Cisco has released updates to address a critical security flaw in the Integrated Management Controller (IMC) that, if successfully exploited, could allow an | Vulnerebility | The Hacker News |
| 1.4.26 | Hackers exploiting critical F5 BIG-IP flaw in attacks, patch now | F5 has reclassified a BIG-IP APM denial-of-service (DoS) vulnerability as a critical-severity remote code execution (RCE) flaw, warning that attackers are exploiting it to deploy webshells on unpatched devices. | Vulnerebility | |
| 1.4.26 | Critical Fortinet Forticlient EMS flaw now exploited in attacks | Attackers are now actively exploiting a critical vulnerability in Fortinet's FortiClient EMS platform, according to threat intelligence company Defused. | Vulnerebility | |
| 1.4.26 | File read flaw in Smart Slider plugin impacts 500K WordPress sites | A vulnerability in the Smart Slider 3 WordPress plugin, active on more than 800,000 websites, can be exploited to allow subscriber-level users access to arbitrary files on the server. | Vulnerebility | BleepingComputer |
| 29.3.26 | Citrix urges admins to patch NetScaler flaws as soon as possible | Citrix has patched two NetScaler ADC and NetScaler Gateway vulnerabilities, one of which is very similar to the CitrixBleed and CitrixBleed2 flaws exploited in zero-day attacks in recent years. | Vulnerebility | BleepingComputer |
| 28.3.26 | Citrix NetScaler Under Active Recon for CVE-2026-3055 (CVSS 9.3) Memory Overread Bug | A recently disclosed critical security flaw impacting Citrix NetScaler ADC and NetScaler Gateway is witnessing active reconnaissance activity, according to | Vulnerebility | The Hacker News |
| 28.3.26 | CISA Adds CVE-2025-53521 to KEV After Active F5 BIG-IP APM Exploitation | The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday added a critical security flaw impacting F5 BIG-IP Access Policy Manager | Vulnerebility | The Hacker News |
| 28.3.26 | TP-Link warns users to patch critical router auth bypass flaw | TP-Link has patched several vulnerabilities in its Archer NX router series, including a critical-severity flaw that may allow attackers to bypass authentication and upload new firmware. | Vulnerebility | |
| 27.3.26 | Open VSX Bug Let Malicious VS Code Extensions Bypass Pre-Publish Security Checks | Cybersecurity researchers have disclosed details of a now-patched bug impacting Open VSX's pre-publish scanning pipeline to cause the tool to allow | Vulnerebility | The Hacker News |
| 24.3.26 | Citrix Urges Patching Critical NetScaler Flaw Allowing Unauthenticated Data Leaks | Citrix has released security updates to address two vulnerabilities in NetScaler ADC and NetScaler Gateway, including a critical flaw that could be exploited to | Vulnerebility | The Hacker News |
| 22.3.26 | Trivy vulnerability scanner breach pushed infostealer via GitHub Actions | The Trivy vulnerability scanner was compromised in a supply-chain attack by threat actors known as TeamPCP, which distributed credential-stealing malware through official releases and GitHub Actions. | Vulnerebility | |
| 22.3.26 | Oracle pushes emergency fix for critical Identity Manager RCE flaw | Oracle has released an out-of-band security update to fix a critical unauthenticated remote code execution vulnerability in Identity Manager and Web Services Manager tracked as CVE-2026-21992. | Vulnerebility | BleepingComputer |
| 22.3.26 | CISA orders feds to patch max-severity Cisco flaw by Sunday | The Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch a maximum-severity vulnerability, CVE-2026-20131, in Cisco Secure Firewall Management Center (FMC) by Sunday, March 22. | Vulnerebility | BleepingComputer |
| 22.3.26 | New ‘PolyShell’ flaw allows unauthenticated RCE on Magento e-stores | A newly disclosed vulnerability dubbed 'PolyShell' affects all Magento Open Source and Adobe Commerce stable version 2 installations, allowing unauthenticated code execution and account takeover. | Vulnerebility | |
| 21.3.26 | Max severity Ubiquiti UniFi flaw may allow account takeover | Ubiquiti has patched two vulnerabilities in the UniFi Network Application, including a maximum-severity flaw that may allow attackers to take over user accounts. | Vulnerebility | BleepingComputer |
| 21.3.26 | ConnectWise patches new flaw allowing ScreenConnect hijacking | ConnectWise is warning ScreenConnect customers of a cryptographic signature verification vulnerability that could lead to unauthorized access and privilege escalation. | Vulnerebility | |
| 21.3.26 | Oracle Patches Critical CVE-2026-21992 Enabling Unauthenticated RCE in Identity Manager | Oracle has released security updates to address a critical security flaw impacting Identity Manager and Web Services Manager that could be exploited | Vulnerebility | The Hacker News |
| 20.3.26 | Critical Langflow Flaw CVE-2026-33017 Triggers Attacks within 20 Hours of Disclosure | A critical security flaw impacting Langflow has come under active exploitation within 20 hours of public disclosure, highlighting the speed at which threat | Vulnerebility | The Hacker News |
| 18.3.26 | Critical Unpatched Telnetd Flaw (CVE-2026-32746) Enables Unauthenticated Root RCE | Cybersecurity researchers have disclosed a critical security flaw impacting the GNU InetUtils telnet daemon (telnetd) that could be exploited by an | Vulnerebility | The Hacker News |
| 18.3.26 | 9 Critical IP KVM Flaws Enable Unauthenticated Root Access Across Four Vendors | Cybersecurity researchers have warned about the risks posed by low-cost IP KVM (Keyboard, Video, Mouse over Internet Protocol) devices, which can grant | Vulnerebility | The Hacker News |
| 18.3.26 | Ubuntu CVE-2026-3888 Bug Lets Attackers Gain Root via systemd Cleanup Timing Exploit | A high-severity security flaw affecting default installations of Ubuntu Desktop versions 24.04 and later could be exploited to escalate privileges to the root | Vulnerebility | The Hacker News |
| 15.3.26 | Veeam warns of critical flaws exposing backup servers to RCE attacks | Data protection company Veeam Software has patched multiple flaws in its Backup & Replication solution, including four critical remote code execution (RCE) vulnerabilities. | Vulnerebility | BleepingComputer |
| 15.3.26 | Google paid $17.1 million for vulnerability reports in 2025 | Google paid over $17 million to 747 security researchers who reported security bugs through its Vulnerability Reward Program (VRP) in 2025. | Vulnerebility | |
| 15.3.26 | SQLi flaw in Elementor Ally plugin impacts 250k+ WordPress sites | An SQL injection vulnerability in Ally, a WordPress plugin from Elementor for web accessibility and usability with more than 400,000 installations, could be exploited to steal sensitive data without authentication. | Vulnerebility | BleepingComputer |
| 14.3.26 | Microsoft releases Windows 10 KB5078885 extended security update | Microsoft has released the Windows 10 KB5078885 extended security update to fix the March 2026 Patch Tuesday vulnerabilities, including 2 zero-days and an issue that prevent some devices from shutting down. | Vulnerebility | BleepingComputer |
| 14.3.26 | Microsoft March 2026 Patch Tuesday fixes 2 zero-days, 79 flaws | Today is Microsoft's March 2026 Patch Tuesday with security updates for 79 flaws, including 2 publicly disclosed zero-day vulnerabilities. | Vulnerebility | |
| 14.3.26 | Windows 11 KB5079473 & KB5078883 cumulative updates released | Microsoft has released Windows 11 KB5079473 and KB5078883 cumulative updates for versions 25H2/24H2 and 23H2 to fix security vulnerabilities, bugs, and add new features. | Vulnerebility | |
| 14.3.26 | HPE warns of critical AOS-CX flaw allowing admin password resets | Hewlett Packard Enterprise (HPE) has patched multiple security vulnerabilities in the Aruba Networking AOS-CX operating system, including several authentication and code execution issues. | Vulnerebility | |
| 14.3.26 | CISA: Recently patched Ivanti EPM flaw now actively exploited | CISA flagged a high-severity Ivanti Endpoint Manager (EPM) vulnerability as actively exploited in attacks and ordered U.S. federal agencies to patch systems within three weeks. | Vulnerebility | |
| 14.3.26 | Google: Cloud attacks exploit flaws more than weak credentials | Hackers are increasingly exploiting newly disclosed vulnerabilities in third-party software to gain initial access to cloud environments, with the window for attacks shrinking from weeks to just days. | Vulnerebility | BleepingComputer |
| 13.3.26 | Nine CrackArmor Flaws in Linux AppArmor Enable Root Escalation, Bypass Container Isolation | Cybersecurity researchers have disclosed multiple security vulnerabilities within the Linux kernel's AppArmor module that could be exploited by | Vulnerebility | The Hacker News |
| 13.3.26 | Veeam Patches 7 Critical Backup & Replication Flaws Allowing Remote Code Execution | Veeam has released security updates to address multiple critical vulnerabilities in its Backup & Replication software that, if successfully | Vulnerebility | The Hacker News |
| 11.3.26 | Critical n8n Flaws Allow Remote Code Execution and Exposure of Stored Credentials | Cybersecurity researchers have disclosed details of two now-patched security flaws in the n8n workflow automation platform, including two critical bugs that | Vulnerebility | The Hacker News |
| 11.3.26 | Dozens of Vendors Patch Security Flaws Across Enterprise Software and Network Devices | SAP has released security updates to address two critical security flaws that could be exploited to achieve arbitrary code execution on affected systems. | Vulnerebility | The Hacker News |
| 10.3.26 | New "LeakyLooker" Flaws in Google Looker Studio Could Enable Cross-Tenant SQL Queries | Cybersecurity researchers have disclosed nine cross-tenant vulnerabilities in Google Looker Studio that could have permitted attackers to run arbitrary SQL | Vulnerebility | The Hacker News |
| 7.3.26 | Cisco warns of max severity Secure FMC flaws giving root access | Cisco has released security updates to patch two maximum-severity vulnerabilities in its Secure Firewall Management Center (FMC) software. | Vulnerebility | |
| 6.3.26 | Hikvision and Rockwell Automation CVSS 9.8 Flaws Added to CISA KEV Catalog | The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added two security flaws impacting Hikvision and Rockwell Automation | Vulnerebility | The Hacker News |
| 3.3.26 | Google Confirms CVE-2026-21385 in Qualcomm Android Component Exploited | Google on Monday disclosed that a high-severity security flaw impacting an open-source Qualcomm component used in Android devices has been | Vulnerebility | The Hacker News |
| 1.3.26 | Third-Party Patching and the Business Footprint We All Share | Everyday tools like PDF readers, email clients, and archive utilities quietly define the real attack surface. Action1 explains how third-party software drift increases exploit risk and why consistent patching reduces exposure across endpoints. | Vulnerebility | |
| 1.3.26 | Trend Micro warns of critical Apex One code execution flaws | Trend Micro has patched two critical Apex One vulnerabilities that allow attackers to gain remote code execution (RCE) on vulnerable Windows systems. | Vulnerebility | |
| 1.3.26 | Critical Juniper Networks PTX flaw allows full router takeover | A critical vulnerability in the Junos OS Evolved network operating system running on PTX Series routers from Juniper Networks could allow an unauthenticated attacker to execute code remotely with root privileges. | Vulnerebility | |
| 1.3.26 | Critical Cisco SD-WAN bug exploited in zero-day attacks since 2023 | Cisco is warning that a critical authentication bypass vulnerability in Cisco Catalyst SD-WAN, tracked as CVE-2026-20127, was actively exploited in zero-day attacks that allowed remote attackers to compromise controllers and add malicious rogue peers to targeted networks. | Vulnerebility | |
| 1.3.26 | The OpenClaw Hype: Analysis of Chatter from Open-Source Deep and Dark Web | OpenClaw has sparked heavy Telegram and dark web chatter, but Flare's data shows more research hype than mass exploitation. Flare explains how its telemetry found real supply-chain risk in the skills marketplace, yet limited signs of large-scale criminal operationalization. | Vulnerebility | BleepingComputer |
| 1.3.26 | Zyxel warns of critical RCE flaw affecting over a dozen routers | Taiwan networking provider Zyxel has released security updates to address a critical vulnerability affecting over a dozen router models that can allow unauthenticated attackers to gain remote command execution on unpatched devices. | Vulnerebility | |
| 28.2.26 | Ex-L3Harris exec jailed for selling zero-days to Russian exploit broker | The former head of Trenchant, a specialized U.S. defense contractor unit, was sentenced Tuesday to more than seven years in federal prison for stealing and selling zero-day exploits to a Russian broker whose clients include the Russian government. | Vulnerebility | |
| 28.2.26 | Critical SolarWinds Serv-U flaws offer root access to servers | SolarWinds has patched four critical Serv-U remote code execution vulnerabilities that could grant attackers root access to unpatched servers. | Vulnerebility | |
| 26.2.26 | Cisco SD-WAN Zero-Day CVE-2026-20127 Exploited Since 2023 for Admin Access | A newly disclosed maximum-severity security flaw in Cisco Catalyst SD-WAN Controller (formerly vSmart) and Catalyst SD-WAN Manager (formerly | Vulnerebility | The Hacker News |
| 26.2.26 | SolarWinds Patches 4 Critical Serv-U 15.5 Flaws Allowing Root Code Execution | SolarWinds has released updates to address four critical security flaws in its Serv-U file transfer software that, if successfully exploited, could result in | Vulnerebility | The Hacker News |
| 26.2.26 | CISA Confirms Active Exploitation of FileZen CVE-2026-25108 Vulnerability | The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added a recently disclosed vulnerability in FileZen to its Known Exploited | Vulnerebility | The Hacker News |
| 26.2.26 | RoguePilot Flaw in GitHub Codespaces Enabled Copilot to Leak GITHUB_TOKEN | A vulnerability in GitHub Codespaces could have been exploited by bad actors to seize control of repositories by injecting malicious Copilot instructions in a | Vulnerebility | The Hacker News |
| 22.2.26 | Flaw in Grandstream VoIP phones allows stealthy eavesdropping | A critical vulnerability in Grandstream GXP1600 series VoIP phones allows a remote, unauthenticated attacker to gain root privileges and silently eavesdrop on communications. | Vulnerebility | |
| 22.2.26 | Critical infra Honeywell CCTVs vulnerable to auth bypass flaw | The U.S. Cybersecurity and Infrastructure Security Agency (CISA) is warning of a critical vulnerability in multiple Honeywell CCTV products that allows unauthorized access to feeds or account hijacking. | Vulnerebility | |
| 20.2.26 | BeyondTrust Flaw Used for Web Shells, Backdoors, and Data Exfiltration | Threat actors have been observed exploiting a recently disclosed critical security flaw impacting BeyondTrust Remote Support (RS) and Privileged | Vulnerebility | The Hacker News |
| 20.2.26 | Cline CLI 2.3.0 Supply Chain Attack Installed OpenClaw on Developer Systems | In yet another software supply chain attack, the open-source, artificial intelligence (AI)-powered coding assistant Cline CLI was updated to stealthily | Vulnerebility | The Hacker News |
| 20.2.26 | Microsoft Patches CVE-2026-26119 Privilege Escalation in Windows Admin Center | Microsoft has disclosed a now-patched security flaw in Windows Admin Center that could allow an attacker to escalate their privileges. Windows | Vulnerebility | The Hacker News |
| 18.2.26 | Grandstream GXP1600 VoIP Phones Exposed to Unauthenticated Remote Code Execution | Cybersecurity researchers have disclosed a critical security flaw in the Grandstream GXP1600 series of VoIP phones that could allow an attacker to | Vulnerebility | The Hacker News |
| 18.2.26 | Critical Flaws Found in Four VS Code Extensions with Over 125 Million Installs | Cybersecurity researchers have disclosed multiple security vulnerabilities in four popular Microsoft Visual Studio Code (VS Code) extensions that, if | Vulnerebility | The Hacker News |
| 18.2.26 | Dell RecoverPoint for VMs Zero-Day CVE-2026-22769 Exploited Since Mid-2024 | A maximum severity security vulnerability in Dell RecoverPoint for Virtual Machines has been exploited as a zero-day by a suspected China-nexus threat | Vulnerebility | The Hacker News |
| 15.2.26 | One threat actor responsible for 83% of recent Ivanti RCE attacks | Threat intelligence observations show that a single threat actor is responsible for most of the active exploitation of two critical vulnerabilities in Ivanti Endpoint Manager Mobile (EPMM), tracked as CVE-2026-21962 and CVE-2026-24061. | Vulnerebility | |
| 15.2.26 | CISA flags critical Microsoft SCCM flaw as exploited in attacks | CISA ordered federal agencies on Thursday to secure their systems against a critical Microsoft Configuration Manager vulnerability patched in October 2024 and now exploited in attacks. | Vulnerebility | |
| 15.2.26 | Microsoft fixes bug that blocked Google Chrome from launching | Microsoft has fixed a known issue causing its Family Safety parental control service to block Windows users from launching Google Chrome and other web browsers. | Vulnerebility | |
| 15.2.26 | WordPress plugin with 900k installs vulnerable to critical RCE flaw | A critical vulnerability in the WPvivid Backup & Migration plugin for WordPress, installed on more than 900,000 websites, can be exploited to achieve remote code execution by uploading arbitrary files without authentication. | Vulnerebility | |
| 12.2.26 | Hackers exploit SolarWinds WHD flaws to deploy DFIR tool in attacks | Hackers are now exploiting SolarWinds Web Help Desk (WHD) vulnerabilities to gain code execution rights on exposed systems and deploy legitimate tools, including the Velociraptor forensics tools, for persistence and remote control. | Vulnerebility | |
| 12.2.26 | BeyondTrust warns of critical RCE flaw in remote support software | BeyondTrust warned customers to patch a critical security flaw in its Remote Support (RS) and Privileged Remote Access (PRA) software that could allow unauthenticated attackers to execute arbitrary code remotely. | Vulnerebility | |
| 11.2.26 | Over 60 Software Vendors Issue Security Fixes Across OS, Cloud, and Network Platforms | It's Patch Tuesday, which means a number of software vendors have released patches for various security vulnerabilities impacting their products and | Vulnerebility | The Hacker News |
| 10.2.26 | Fortinet Patches Critical SQLi Flaw Enabling Unauthenticated Code Execution | Fortinet has released security updates to address a critical flaw impacting FortiClientEMS that could lead to the execution of arbitrary code on | Vulnerebility | The Hacker News |
| 9.2.26 | BeyondTrust Fixes Critical Pre-Auth RCE Vulnerability in Remote Support and PRA | BeyondTrust has released updates to address a critical security flaw impacting Remote Support (RS) and Privileged Remote Access (PRA) products that, if | Vulnerebility | The Hacker News |
| 8.2.26 | CISA warns of SmarterMail RCE flaw used in ransomware attacks | The Cybersecurity & Infrastructure Security Agency (CISA) in the U.S. has issued a warning about CVE-2026-24423, an unauthenticated remote code execution (RCE) flaw in SmarterMail that is used in ransomware attacks. | Vulnerebility | |
| 7.2.26 | CISA flags critical SolarWinds RCE flaw as exploited in attacks | CISA has flagged a critical SolarWinds Web Help Desk vulnerability as actively exploited in attacks and ordered federal agencies to patch their systems within three days. | Vulnerebility | |
| 7.2.26 | Hackers exploit critical React Native Metro bug to breach dev systems | Hackers are targeting developers by exploiting the critical vulnerability CVE-2025-11953 in the Metro server for React Native to deliver malicious payloads for Windows and Linux. | Vulnerebility | |
| 7.2.26 | Russian hackers exploit recently patched Microsoft Office bug in attacks | Ukraine's Computer Emergency Response Team (CERT) says that Russian hackers are exploiting CVE-2026-21509, a recently patched vulnerability in multiple versions of Microsoft Office. | Vulnerebility | |
| 5.2.26 | Critical n8n Flaw CVE-2026-25049 Enables System Command Execution via Malicious Workflows | A new, critical security vulnerability has been disclosed in the n8n workflow automation platform that, if successfully exploited, could result in the | Vulnerebility | The Hacker News |
| 3.2.26 | Hackers Exploit Metro4Shell RCE Flaw in React Native CLI npm Package | Threat actors have been observed exploiting a critical security flaw impacting the Metro Development Server in the popular "@react-native-community/cli" | Vulnerebility | The Hacker News |
| 3.2.26 | New sandbox escape flaw exposes n8n instances to RCE attacks | Two vulnerabilities in the n8n workflow automation platform could allow attackers to fully compromise affected instances, access sensitive data, and execute arbitrary code on the underlying host. | Vulnerebility | |
| 3.2.26 | SolarWinds warns of critical Web Help Desk RCE, auth bypass flaws | SolarWinds has released security updates to patch critical authentication bypass and remote command execution vulnerabilities in its Web Help Desk IT help desk software. | Vulnerebility | |
| 3.2.26 | Fortinet blocks exploited FortiCloud SSO zero day until patch is ready | Fortinet has confirmed a new, actively exploited critical FortiCloud single sign-on (SSO) authentication bypass vulnerability, tracked as CVE-2026-24858, and says it has mitigated the zero-day attacks by blocking FortiCloud SSO connections from devices running vulnerable firmware versions. | Vulnerebility | |
| 3.2.26 | WinRAR path traversal flaw still exploited by numerous hackers | Multiple threat actors, both state-sponsored and financially motivated, are exploiting the CVE-2025-8088 high-severity vulnerability in WinRAR for initial access and to deliver various malicious payloads. | Vulnerebility | |
| 3.2.26 | Critical sandbox escape flaw found in popular vm2 NodeJS library | A critical-severity vulnerability in the vm2 Node.js sandbox library, tracked as CVE-2026-22709, allows escaping the sandbox and executing arbitrary code on the underlying host system. | Vulnerebility | |
| 3.2.26 | OpenClaw Bug Enables One-Click Remote Code Execution via Malicious Link | A high-severity security flaw has been disclosed in OpenClaw (formerly referred to as Clawdbot and Moltbot) that could allow remote code execution | Vulnerebility | The Hacker News |
| 30.1.26 | SmarterMail Fixes Critical Unauthenticated RCE Flaw with CVSS 9.3 Score | SmarterTools has addressed two more security flaws in SmarterMail email software, including one critical security flaw that could result in arbitrary code | Vulnerebility | The Hacker News |
| 30.1.26 | SolarWinds Fixes Four Critical Web Help Desk Flaws With Unauthenticated RCE and Auth Bypass | SolarWinds has released security updates to address multiple security vulnerabilities impacting SolarWinds Web Help Desk, including four critical | Vulnerebility | The Hacker News |
| 28.1.26 | Diverse Threat Actors Exploiting Critical WinRAR Vulnerability CVE-2025-8088 | The Google Threat Intelligence Group (GTIG) has identified widespread, active exploitation of the critical vulnerability CVE-2025-8088 in WinRAR, a popular file archiver tool for Windows, to establish initial access and deliver diverse payloads. | Vulnerebility | GTI |
| 28.1.26 | Critical vm2 Node.js Flaw Allows Sandbox Escape and Arbitrary Code Execution | A critical sandbox escape vulnerability has been disclosed in the popular vm2 Node.js library that, if successfully exploited, could allow attackers to run arbitrary code on the underlying operating system. | Vulnerebility | The Hacker News |
| 28.1.26 | Two High-Severity n8n Flaws Allow Authenticated Remote Code Execution | Cybersecurity researchers have disclosed two new security flaws in the n8n workflow automation platform, including a crucial vulnerability that could result in remote code execution. The weaknesses, discovered by the JFrog | Vulnerebility | The Hacker News |
| 28.1.26 | Fortinet Patches CVE-2026-24858 After Active FortiOS SSO Exploitation Detected | Fortinet has begun releasing security updates to address a critical flaw impacting FortiOS that has come under active exploitation in the wild. The | Vulnerebility | The Hacker News |
| 28.1.26 | Critical Grist-Core Vulnerability Allows RCE Attacks via Spreadsheet Formulas | A critical security flaw has been disclosed in Grist‑Core , an open-source, self-hosted version of the Grist relational spreadsheet-database, that could result | Vulnerebility | The Hacker News |
| 25.1.26 | Fortinet confirms critical FortiCloud auth bypass not fully patched | Days after admins began reporting that their fully patched firewalls are being hacked, Fortinet confirmed it's working to fully address a critical FortiCloud SSO authentication bypass vulnerability that should have already been patched since early December. | Vulnerebility | |
| 25.1.26 | Cisco fixes Unified Communications RCE zero day exploited in attacks | Cisco has fixed a critical Unified Communications and Webex Calling remote code execution vulnerability, tracked as CVE-2026-20045, that has been actively exploited as a zero-day in attacks. | Vulnerebility | |
| 25.1.26 | Fortinet admins report patched FortiGate firewalls getting hacked | Fortinet customers are seeing attackers exploiting a patch bypass for a previously fixed critical FortiGate authentication vulnerability (CVE-2025-59718) to hack patched firewalls. | Vulnerebility | |
| 25.1.26 | GitLab warns of high-severity 2FA bypass, denial-of-service flaws | GitLab has patched a high-severity two-factor authentication bypass impacting community and enterprise editions of its software development platform. | Vulnerebility | |
| 25.1.26 | ACF plugin bug gives hackers admin on 50,000 WordPress sites | A critical-severity vulnerability in the Advanced Custom Fields: Extended (ACF Extended) plugin for WordPress can be exploited remotely by unauthenticated attackers to obtain administrative permissions. | Vulnerebility | |
| 23.1.26 | Fortinet Confirms Active FortiCloud SSO Bypass on Fully Patched FortiGate Firewalls | Fortinet has officially confirmed that it's working to completely plug a FortiCloud SSO authentication bypass vulnerability following reports of fresh exploitation activity on fully-patched firewalls. "In the last 24 hours, we have | Vulnerebility | The Hacker News |
| 23.1.26 | Critical GNU InetUtils telnetd Flaw Lets Attackers Bypass Login and Gain Root Access | A critical security flaw has been disclosed in the GNU InetUtils telnet daemon ( telnetd ) that went unnoticed for nearly 11 years. The vulnerability, tracked as | Vulnerebility | The Hacker News |
| 22.1.26 | Cisco Fixes Actively Exploited Zero-Day CVE-2026-20045 in Unified CM and Webex | Cisco has released fresh patches to address what it described as a "critical" security vulnerability impacting multiple Unified Communications (CM) | Vulnerebility | The Hacker News |
| 22.1.26 | CERT/CC Warns binary-parser Bug Allows Node.js Privilege-Level Code Execution | A security vulnerability has been disclosed in the popular binary-parser npm library that, if successfully exploited, could result in the execution of arbitrary | Vulnerebility | The Hacker News |
| 22.1.26 | CERT/CC Warns binary-parser Bug Allows Node.js Privilege-Level Code Execution | A security vulnerability has been disclosed in the popular binary-parser npm library that, if successfully exploited, could result in the execution of arbitrary | Vulnerebility | The Hacker News |
| 20.1.26 | Cloudflare Fixes ACME Validation Bug Allowing WAF Bypass to Origin Servers | Cloudflare has addressed a security vulnerability impacting its Automatic Certificate Management Environment ( ACME ) validation logic that made it | Vulnerebility | The Hacker News |
| 19.1.26 |
New StackWarp Hardware Flaw Breaks AMD SEV-SNP Protections on Zen 1–5 CPUs |
A team of academics from the CISPA Helmholtz Center for Information Security in Germany has disclosed the details of a new hardware vulnerability | Vulnerebility | The Hacker News |
| 18.1.26 | Critical WhisperPair flaw lets hackers track, eavesdrop via Bluetooth audio devices | A critical vulnerability in Google's Fast Pair protocol can allow attackers to hijack Bluetooth audio accessories like wireless headphones and earbuds, track users, and eavesdrop on their conversations. | Vulnerebility | |
| 18.1.26 | Palo Alto Networks warns of DoS bug letting hackers disable firewalls | Palo Alto Networks patched a high-severity vulnerability that could allow unauthenticated attackers to disable firewall protections in denial-of-service (DoS) attacks. | Vulnerebility | |
| 17.1.26 | Max severity Ni8mare flaw impacts nearly 60,000 n8n instances | Nearly 60,000 n8n instances exposed online remain unpatched against a maximum-severity vulnerability dubbed "Ni8mare." | Vulnerebility | |
| 16.1.26 | Palo Alto Fixes GlobalProtect DoS Flaw That Can Crash Firewalls Without Login | Palo Alto Networks has released security updates for a high-severity security flaw impacting GlobalProtect Gateway and Portal, for which it said there exists a proof-of-concept (PoC) | Vulnerebility | The Hacker News |
| 14.1.26 | Fortinet Fixes Critical FortiSIEM Flaw Allowing Unauthenticated Remote Code Execution | Fortinet has released updates to fix a critical security flaw impacting FortiSIEM that could allow an unauthenticated attacker to achieve code execution on susceptible instances. The | Vulnerebility | The Hacker News |
| 14.1.26 | Critical Node.js Vulnerability Can Cause Server Crashes via async_hooks Stack Overflow | Node.js has released updates to fix what it described as a critical security issue impacting "virtually every production Node.js app" that, if successfully exploited, could trigger a denial- | Vulnerebility | The Hacker News |
| 11.1.26 | Trend Micro warns of critical Apex Central RCE vulnerability | Japanese cybersecurity software firm Trend Micro has patched a critical security flaw in Apex Central (on-premise) that could allow attackers to execute arbitrary code with SYSTEM privileges. | Vulnerebility | |
| 10.1.26 | Cisco switches hit by reboot loops due to DNS client bug | Multiple Cisco switch models are suddenly experiencing reboot loops after logging fatal DNS client errors, according to reports seen by BleepingComputer. | Vulnerebility | |
| 10.1.26 | Critical jsPDF flaw lets hackers steal secrets via generated PDFs | The jsPDF library for generating PDF documents in JavaScript applications is vulnerable to a critical vulnerability that allows an attacker to steal sensitive data from the local filesystem by including it in generated files. | Vulnerebility | |
| 10.1.26 | Max severity Ni8mare flaw lets hackers hijack n8n servers | A maximum severity vulnerability dubbed "Ni8mare" allows remote, unauthenticated attackers to take control over locally deployed instances of the N8N workflow automation platform. | Vulnerebility | |
| 10.1.26 | New Veeam vulnerabilities expose backup servers to RCE attacks | Veeam released security updates to patch multiple security flaws in its Backup & Replication software, including a critical remote code execution (RCE) vulnerability. | Vulnerebility | |
| 10.1.26 | Trend Micro Apex Central RCE Flaw Scores 9.8 CVSS in On-Prem Windows Versions | Trend Micro has released security updates to address multiple security vulnerabilities impacting on-premise versions of Apex Central for Windows, including a critical bug that | Vulnerebility | The Hacker News |
| 8.1.26 | Coolify Discloses 11 Critical Flaws Enabling Full Server Compromise on Self-Hosted Instances | Cybersecurity researchers have disclosed details of multiple critical-severity security flaws affecting Coolify , an open-source, self-hosting platform, that could result in authentication bypass and remote code execution. | Vulnerebility | The Hacker News |
| 7.1.26 | Critical n8n Vulnerability (CVSS 10.0) Allows Unauthenticated Attackers to Take Full Control | Cybersecurity researchers have disclosed details of yet another maximum-severity security flaw in n8n , a popular workflow automation platform, that allows an unauthenticated remote | Vulnerebility | The Hacker News |
| 7.1.26 | n8n Warns of CVSS 10.0 RCE Vulnerability Affecting Self-Hosted and Cloud Versions | Open-source workflow automation platform n8n has warned of a maximum-severity security flaw that, if successfully exploited, could result in authenticated remote code execution | Vulnerebility | The Hacker News |
| 7.1.26 | Veeam Patches Critical RCE Vulnerability with CVSS 9.0 in Backup & Replication | Veeam has released security updates to address multiple flaws in its Backup & Replication software, including a "critical" issue that could result in remote code execution (RCE). The | Vulnerebility | The Hacker News |
| 7.1.26 | Ongoing Attacks Exploiting Critical RCE Vulnerability in Legacy D-Link DSL Routers | A newly discovered critical security flaw in legacy D-Link DSL gateway routers has come under active exploitation in the wild. The vulnerability, tracked as CVE-2026-0625 (CVSS | Vulnerebility | The Hacker News |
| 7.1.26 | Unpatched Firmware Flaw Exposes TOTOLINK EX200 to Full Remote Device Takeover | The CERT Coordination Center (CERT/CC) has disclosed details of an unpatched security flaw impacting TOTOLINK EX200 wireless range extender that could allow a remote | Vulnerebility | The Hacker News |
| 6.1.26 | New n8n Vulnerability (9.9 CVSS) Lets Authenticated Users Execute System Commands | A new critical security vulnerability has been disclosed in n8n, an open-source workflow automation platform, that could enable an authenticated attacker to execute arbitrary system | Vulnerebility | The Hacker News |
| 3.1.26 | IBM warns of critical API Connect auth bypass vulnerability | IBM urged customers to patch a critical authentication bypass vulnerability in its API Connect enterprise platform that could allow attackers to access apps remotely. | Vulnerebility | |
| 3.1.26 | Exploited MongoBleed flaw leaks MongoDB secrets, 87K servers exposed | A severe vulnerability affecting multiple MongoDB versions, dubbed MongoBleed (CVE-2025-14847), is being actively exploited in the wild, with over 80,000 potentially vulnerable servers exposed on the public web. | Vulnerebility |