Vulnerabilities

Cisco Warns of Unpatched Secure Email Flaws, Patches Critical Switch Vulnerabilities

Cisco Warns of Unpatched Secure Email Flaws, Patches Critical Switch Vulnerabilities 2026-09-03 at 13:30 By Ionut Arghire Publicly disclosed S/MIME flaws could expose encrypted email content, while critical IOS XR and Nexus bugs could enable remote code execution and authentication bypass. The post Cisco Warns of Unpatched Secure Email Flaws, Patches Critical Switch Vulnerabilities appeared […]

Cisco Warns of Unpatched Secure Email Flaws, Patches Critical Switch Vulnerabilities Read More »

Exploit Published for Fresh Cleo Harmony Vulnerability

Exploit Published for Fresh Cleo Harmony Vulnerability 2026-09-02 at 15:18 By Ionut Arghire The security defect allows remote attackers to bypass authentication through argument bearer manipulation. The post Exploit Published for Fresh Cleo Harmony Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Exploit Published for Fresh Cleo Harmony Vulnerability Read More »

Chrome and Firefox Updates Patch Dozens of Vulnerabilities

Chrome and Firefox Updates Patch Dozens of Vulnerabilities 2026-09-02 at 12:12 By Ionut Arghire The browser refreshes fix multiple use-after-free, sandbox escape, and privilege escalation bugs. The post Chrome and Firefox Updates Patch Dozens of Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Chrome and Firefox Updates Patch Dozens of Vulnerabilities Read More »

SonicWall Warns of Two SMA1000 Zero-Days Exploited in Attacks

SonicWall Warns of Two SMA1000 Zero-Days Exploited in Attacks 2026-09-02 at 08:04 By Eduard Kovacs The vulnerabilities CVE-2026-83549 and CVE-2026-83548 can be chained for unauthenticated remote code execution. The post SonicWall Warns of Two SMA1000 Zero-Days Exploited in Attacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

SonicWall Warns of Two SMA1000 Zero-Days Exploited in Attacks Read More »

Hackers Start Exploiting Critical Langflow Vulnerability

Hackers Start Exploiting Critical Langflow Vulnerability 2026-09-01 at 15:07 By Ionut Arghire Tracked as CVE-2026-0768, the security defect allows unauthenticated attackers to execute arbitrary Python code remotely. The post Hackers Start Exploiting Critical Langflow Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Hackers Start Exploiting Critical Langflow Vulnerability Read More »

Critical JFrog Artifactory Vulnerability Reportedly Exploited in the Wild

Critical JFrog Artifactory Vulnerability Reportedly Exploited in the Wild 2026-09-01 at 12:59 By Eduard Kovacs Exploitation of the authentication bypass vulnerability CVE-2026-82329 started just days after its public disclosure. The post Critical JFrog Artifactory Vulnerability Reportedly Exploited in the Wild appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Critical JFrog Artifactory Vulnerability Reportedly Exploited in the Wild Read More »

WatchGuard Patches Critical Vulnerabilities

WatchGuard Patches Critical Vulnerabilities 2026-09-01 at 11:50 By Ionut Arghire Three critical issues in the Fireware OS iked process could allow unauthenticated attackers to execute arbitrary code remotely. The post WatchGuard Patches Critical Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

WatchGuard Patches Critical Vulnerabilities Read More »

PaperCut Exploitation Escalates to Active Intrusions

PaperCut Exploitation Escalates to Active Intrusions 2026-09-01 at 08:27 By Eduard Kovacs CISA has added the vulnerabilities tracked as CVE-2026-82078 and CVE-2026-81578 to its KEV catalog. The post PaperCut Exploitation Escalates to Active Intrusions appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

PaperCut Exploitation Escalates to Active Intrusions Read More »

Nightmare Eclipse Drops ‘HardBreacher’ Kaspersky Product Exploit

Nightmare Eclipse Drops ‘HardBreacher’ Kaspersky Product Exploit 2026-08-31 at 17:32 By Eduard Kovacs Kaspersky told SecurityWeek that it patched the vulnerability affecting its Endpoint Security product. The post Nightmare Eclipse Drops ‘HardBreacher’ Kaspersky Product Exploit appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Nightmare Eclipse Drops ‘HardBreacher’ Kaspersky Product Exploit Read More »

ServiceNow Patches 3 Critical Code Injection Vulnerabilities

ServiceNow Patches 3 Critical Code Injection Vulnerabilities 2026-08-31 at 16:59 By Ionut Arghire Attackers could exploit the security defects to execute arbitrary code and access or tamper with data. The post ServiceNow Patches 3 Critical Code Injection Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

ServiceNow Patches 3 Critical Code Injection Vulnerabilities Read More »

Critical Ruby on Rails Vulnerability in Attackers’ Crosshairs

Critical Ruby on Rails Vulnerability in Attackers’ Crosshairs 2026-08-31 at 14:24 By Ionut Arghire Named KindaRails2Shell, the arbitrary file read flaw allows attackers to extract secrets and execute arbitrary code remotely. The post Critical Ruby on Rails Vulnerability in Attackers’ Crosshairs appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Critical Ruby on Rails Vulnerability in Attackers’ Crosshairs Read More »

More Details Emerge on Exploited PaperCut Vulnerabilities

More Details Emerge on Exploited PaperCut Vulnerabilities 2026-08-31 at 09:51 By Eduard Kovacs PaperCut has released a second emergency patch for the exploited vulnerabilities, which are now tracked as CVE-2026-82078 and CVE-2026-81578. The post More Details Emerge on Exploited PaperCut Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

More Details Emerge on Exploited PaperCut Vulnerabilities Read More »

In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker Sanctions

In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker Sanctions 2026-08-28 at 18:35 By SecurityWeek News Noteworthy stories that might have slipped under the radar: Manchester Airports Group cyberattack, Carhartt breach data was partly fake, U.S. Bank responds to ransomware gang’s claims. The post In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker […]

In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker Sanctions Read More »

Still Circling: Inside the Operator Behind Blind Eagle’s GitHub Loader

Still Circling: Inside the Operator Behind Blind Eagle’s GitHub Loader 2026-08-28 at 17:00 By Serhii Melnyk This is a collaborative follow-up to our original post, developed jointly with Emmanuel C., an independent security researcher not affiliated with LevelBlue, who contributed additional infrastructure and tooling findings based on an analysis of the same GitHub staging account. […]

Still Circling: Inside the Operator Behind Blind Eagle’s GitHub Loader Read More »

OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems

OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems 2026-08-28 at 15:36 By Eduard Kovacs CISA has added the exploited flaw, CVE-2026-53362, to its KEV catalog, alongside a JFrog vulnerability exploited by OpenAI agents. The post OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems appeared first on SecurityWeek. This article is an […]

OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems Read More »

PaperCut Releases Emergency Patch for Exploited Zero-Day

PaperCut Releases Emergency Patch for Exploited Zero-Day 2026-08-28 at 11:40 By Eduard Kovacs A CVE identifier has not yet been assigned, but PaperCut is urging NG/MF users to install patches and implement mitigations. The post PaperCut Releases Emergency Patch for Exploited Zero-Day appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original […]

PaperCut Releases Emergency Patch for Exploited Zero-Day Read More »

Recent Citrix NetScaler Vulnerability Exploited in the Wild

Recent Citrix NetScaler Vulnerability Exploited in the Wild 2026-08-27 at 07:39 By Eduard Kovacs CISA is urging government agencies to immediately patch the Citrix NetScaler vulnerability tracked as CVE-2026-8452. The post Recent Citrix NetScaler Vulnerability Exploited in the Wild appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Recent Citrix NetScaler Vulnerability Exploited in the Wild Read More »

Adobe and Nvidia Patch Dozens of Vulnerabilities

Adobe and Nvidia Patch Dozens of Vulnerabilities 2026-08-26 at 15:39 By Eduard Kovacs Adobe and Nvidia each published several advisories, including ones that address critical vulnerabilities in their products. The post Adobe and Nvidia Patch Dozens of Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Adobe and Nvidia Patch Dozens of Vulnerabilities Read More »

Chrome 152 Patches Over 300 Vulnerabilities

Chrome 152 Patches Over 300 Vulnerabilities 2026-08-26 at 12:50 By Eduard Kovacs Most of the flaws were discovered by Google using AI, but researchers are still discovering high-value Chrome vulnerabilities. The post Chrome 152 Patches Over 300 Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Chrome 152 Patches Over 300 Vulnerabilities Read More »

CISA Warns of Exploited Gitea Vulnerability

CISA Warns of Exploited Gitea Vulnerability 2026-08-26 at 08:17 By Eduard Kovacs CVE-2026-60004 is a remote code execution vulnerability patched by Gitea developers in late July with the release of version 1.27.1. The post CISA Warns of Exploited Gitea Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

CISA Warns of Exploited Gitea Vulnerability Read More »

Scroll to Top