CVE-2026-0300: critical PAN-OS portal root RCE flaw
CVE-2026-0300 enables unauthenticated root RCE in a specific PAN-OS Authentication Portal configuration. Check exposure, patches and mitigations.
Analyses of critical vulnerabilities and CVEs: how they work, who is affected and how to patch before attackers exploit them.
CVE-2026-0300 enables unauthenticated root RCE in a specific PAN-OS Authentication Portal configuration. Check exposure, patches and mitigations.
CVE-2026-10520 is an actively exploited CVSS 10 unauthenticated root RCE in Ivanti Sentry. Check affected versions, patches and response steps.
CVE-2026-11645 in Chrome V8 is actively exploited. Check fixed Chrome and Edge versions and the response steps for users and administrators.
CVE-2026-28318 lets an unauthenticated attacker crash SolarWinds Serv-U with a crafted POST request. Review affected versions, Hotfix 1 and mitigations.
CVE-2026-41089 is an actively exploited unauthenticated Netlogon RCE on Windows domain controllers. Review affected systems and response steps.
CVE-2026-42897 executes JavaScript after a crafted email is opened in on-premises OWA with user interaction. Check scope, fixes and mitigations.
2026 confirms a worrying trend: vulnerabilities are exploited faster than vendors ship patches. What it means for defence and how to keep up.
Dozens of new vulnerabilities are published every day. We show how to tell the ones that actually affect you from the noise.
The scanner is the easy part. How to build the full process: inventory, risk-based prioritisation, remediation SLAs and metrics that matter.
CVE-2026-35616 in FortiClient EMS is actively exploited and listed in CISA KEV. Check affected releases, the hotfix and investigation steps.
CVE-2026-33827 is a network race condition in Windows TCP/IP. Review confirmed scope, attack conditions and a defensible patching plan.
CVE-2026-32201 scores 6.5 but appears in CISA KEV. Check affected SharePoint Server editions and follow a defensible response plan.
CVE-2026-1281 and CVE-2026-1340 enable unauthenticated RCE in Ivanti EPMM. Review advisory facts, KEV status and response steps.
In summer 2025, CVE-2025-53770 in SharePoint Server let attackers take over servers with no login. We analyse the ToolShell chain and its lessons.
CVE-2025-5777 let attackers pull session tokens from Citrix NetScaler gateways, bypassing MFA. We analyse CitrixBleed 2 and the defence.
CVE-2025-31324 in SAP NetWeaver let attackers upload a web shell with no login and take over the ERP. We analyse attacks on a company's heart.
CVE-2025-29824 is another 0-day in the Windows CLFS driver, used by ransomware to seize SYSTEM. Why this class of flaw returns and how to limit the risk.
Book a free consultation. We'll talk about your infrastructure and real priorities.