CVE-2026-10702: a page visit enabled Firefox RCE
Public CVE-2026-10702 analysis explains a SpiderMonkey JIT flaw and Firefox-to-kernel chain. Review scope, patches and defensive priorities.
Daily vulnerability and CVE analysis explaining what happened, who is affected, how to assess exposure and which fixes or mitigations come first.
Public CVE-2026-10702 analysis explains a SpiderMonkey JIT flaw and Firefox-to-kernel chain. Review scope, patches and defensive priorities.
Gitea before 1.27.1 let repository writers create a live Git hook and execute server commands. Review preconditions, impact and remediation.
VMSA-2026-0006 fixes VM escape CVE-2026-47876 and two critical vCenter flaws. Review versions, priorities, detection and rollout.
A critical Fastjson 1.x flaw enables remote code execution even with AutoType disabled. Learn the attack conditions, SafeMode mitigation and response plan.
A public exploit runs commands as git on unpatched GitLab 18.11.3 servers. The fix shipped as a bugfix, with no CVE. Analysis and lessons.
Node.js announced HIGH-severity fixes for the 26, 24 and 22 release lines. Here is what is confirmed, what remains undisclosed and how to patch safely.
Two CVSS 9.1 flaws in FortiSandbox let an unauthenticated attacker run OS commands. Both are in CISA KEV. Analysis, detection and remediation.
Microsoft patched a record 570 vulnerabilities and three zero-days in July 2026. How to triage that many fixes and what you must not defer.
The public Certighost exploit lets an ordinary domain user impersonate a domain controller through AD CS and run DCSync. Analysis and detection.
CVE-2026-48294 (HermeticReader) in Adobe's Acrobat Chrome extension let any site read WhatsApp Web data across origins. Check that you are on the patched build.
CVE-2026-8933 is a race condition in snap-confine that gives a local user root on default Ubuntu Desktop 24.04, 25.10 and 26.04. How to patch it, and why.
CVE-2026-16232 (CVSS 9.1) lets an unauthenticated attacker take over SmartConsole with admin rights. It is in CISA KEV and actively exploited — patch now.
CVE-2026-64600 (RefluXFS) gives a local user root through an XFS race condition. See which distributions to patch and why the reboot matters.
CVE-2026-6875 enables pre-auth RCE in ServiceNow AI Platform. Review exploitation evidence, patches, MID Server exposure and response steps.
Zimbra 10.1.20 fixes command injection, four XSS paths, forwarding bypass, EWS, delegation and SSRF. Follow a safe upgrade and hunt plan.
CVE-2026-42533 is a configuration-dependent heap overflow in NGINX. Check affected versions, exploit conditions, detection and a safe update plan.
HollowByte shows how an 11-byte TLS record can exhaust memory in OpenSSL services. Check affected releases, exposure and a safe update plan.
CVE-2026-58644 in SharePoint is actively exploited. Review affected builds, KEV priority, forensic triage, patching and remediation evidence.
WordPress 7.0.2 fixes a critical Core RCE chain. Review affected versions, safe rollout, compromise detection and post-update validation steps.
Grafana OnCall has critical flaw CVE-2026-63087. Understand exposure, potential impact, detection hypotheses and a safe risk-reduction plan.
CISA confirms active exploitation of CVE-2026-46817 in Oracle EBS. Check affected 12.2.3–12.2.15 systems, response priorities and post-patch actions.
CVE-2026-56164 and CVE-2026-56155 are being exploited. Learn how to establish SharePoint and AD FS exposure, patch safely and collect defensible validation evidence.
SonicWall confirms active exploitation of SSRF and RCE flaws in SMA 1000. Check affected builds, hunt vendor IOCs and decide whether to patch or rebuild.
Mozilla has fixed CVE-2026-15718 and CVE-2026-15719. Public exploit code is not confirmed exploitation, but it sharply reduces the time available to update.
PTC released critical fixes for additional Windchill and FlexPLM versions on 14 July. Review affected releases, web-shell IOCs and a safe PLM patching plan.
SAP’s July update fixes critical flaws in NetWeaver, Approuter and Commerce Cloud. Understand the 9.9 risk, patch order and the evidence needed to close remediation.
CVE-2026-0300 enables unauthenticated root RCE in a specific PAN-OS Authentication Portal configuration. Check exposure, patches and mitigations.
CVE-2026-10520 is an actively exploited CVSS 10 unauthenticated root RCE in Ivanti Sentry. Check affected versions, patches and response steps.
CVE-2026-11645 in Chrome V8 is actively exploited. Check fixed Chrome and Edge versions and the response steps for users and administrators.
CVE-2026-28318 lets an unauthenticated attacker crash SolarWinds Serv-U with a crafted POST request. Review affected versions, Hotfix 1 and mitigations.
CVE-2026-41089 is an actively exploited unauthenticated Netlogon RCE on Windows domain controllers. Review affected systems and response steps.
CVE-2026-42897 executes JavaScript after a crafted email is opened in on-premises OWA with user interaction. Check scope, fixes and mitigations.
CVE-2026-48282 in Adobe ColdFusion (CVSS 10.0) was exploited within hours of a public write-up. See the patched versions and how to reduce RDS risk.
2026 confirms a worrying trend: vulnerabilities are exploited faster than vendors ship patches. What it means for defence and how to keep up.
Dozens of new vulnerabilities are published every day. We show how to tell the ones that actually affect you from the noise.
The scanner is the easy part. How to build the full process: inventory, risk-based prioritisation, remediation SLAs and metrics that matter.
Technical CopyFail analysis: CVE-2026-31431, algif_aead, splice, page-cache overwrite, affected Linux systems, safe PoC, detection and remediation.
CVE-2026-35616 in FortiClient EMS is actively exploited and listed in CISA KEV. Check affected releases, the hotfix and investigation steps.
CVE-2026-33827 is a network race condition in Windows TCP/IP. Review confirmed scope, attack conditions and a defensible patching plan.
CVE-2026-32201 scores 6.5 but appears in CISA KEV. Check affected SharePoint Server editions and follow a defensible response plan.
Technical BlueHammer analysis: Defender local privilege escalation, safe PoC boundaries, KEV status, platform versions, hunting and remediation.
Critical CVSS 9.8 Cisco SSM On-Prem flaw: exposed internal service, unauthenticated commands as root, affected versions, detection and upgrade plan.
Google confirmed active exploitation of an out-of-bounds write in Skia and a use-after-free in Dawn. Fixed releases and an enterprise response runbook.
Jenkins handled tar symlinks unsafely. We explain the code-execution path, exploit conditions, affected releases and the 2.555/LTS 2.541.3 fix.
A critical ddp-streamer authentication bypass came from a missing await. Combined with CVE-2026-30833, it enabled account takeover without a full username.
Technical guide to CVE-2026-21669–21709 in Veeam VBR 13: domain-user RCE, Backup Viewer, SSH credentials, HA, patching and investigation.
FortiWeb allowed unauthenticated requests to bypass login rate limiting. Complete 8.0/7.6/7.4/7.2/7.0 fixed-version matrix and defence plan.
Technical guide to CVSS 10 CVE-2026-20127 and Cisco SD-WAN Manager flaws: NETCONF access, auth.log evidence, segmentation and upgrades.
CVE-2026-21510, 21513, 21514, 21519, 21525 and 21533 explained: attack-chain roles, deployment priorities, hunting and compensating controls.
Critical vLLM RCE combined an address leak with a JPEG2000 flaw in OpenCV/FFmpeg. Affected versions, exploit chain and safe mitigation.
CVE-2026-1281 and CVE-2026-1340 enable unauthenticated RCE in Ivanti EPMM. Review advisory facts, KEV status and response steps.
Technical analysis of critical FortiCloud SSO CVE-2026-24858: attack conditions, affected Fortinet products, persistence accounts, logs and response.
Technical analysis of CVSS 10 n8n Ni8mare: vulnerable form workflow, local file read, possible chains, detection, remediation and automation hardening.
CVE-2025-55182 React2Shell is a CVSS 10.0 unauthenticated RCE. Affected React and Next.js versions, public PoC, attacks and patches.
CVE-2025-64446 (CVSS 9.4) lets unauthenticated attackers run FortiWeb admin commands. Public PoC, KEV, versions, hunting and fixes.
CVE-2025-59287 (CVSS 9.8) enables RCE in Windows Server Update Services. OOB patches, KEV, defensive PoC, detection and remediation.
CVE-2025-61882 (CVSS 9.8) enables unauthenticated code execution in Oracle EBS 12.2.3–12.2.14. PoC, IOCs, patches and threat hunting.
CVE-2025-10035 (CVSS 10.0) in GoAnywhere MFT was exploited as a zero-day. PoC analysis, Medusa ransomware, IOCs and vendor fixes.
In summer 2025, CVE-2025-53770 in SharePoint Server let attackers take over servers with no login. We analyse the ToolShell chain and its lessons.
CVE-2025-47812 (CVSS 10.0) enables RCE in Wing FTP Server before 7.4.4, including via anonymous access. PoC, KEV, detection and fixes.
CVE-2025-5777 let attackers pull session tokens from Citrix NetScaler gateways, bypassing MFA. We analyse CitrixBleed 2 and the defence.
CVE-2025-49113 (CVSS 9.9) enables code execution in Roundcube through PHP deserialization. Versions, public PoC, detection and updates.
CVE-2025-31324 in SAP NetWeaver let attackers upload a web shell with no login and take over the ERP. We analyse attacks on a company's heart.
CVE-2025-32433 is a CVSS 10.0 unauthenticated RCE in Erlang/OTP SSH. Affected versions, public PoC, detection and vendor fixes.
CVE-2025-29824 is another 0-day in the Windows CLFS driver, used by ransomware to seize SYSTEM. Why this class of flaw returns and how to limit the risk.
CVE-2025-3248 (CVSS 9.8) enables unauthenticated code execution in Langflow before 1.3.0. Public PoC, KEV status, detection and fixes.
CVE-2025-1974 (CVSS 9.8) enables ingress-nginx RCE and possible Kubernetes takeover. Affected versions, public PoC, detection and fixes.
We turn current threats into role-based training, safe exercises and a clear reporting path. The free Academy remains available for self-directed learning.