Vulnerabilities
89 articles RSS
Cisco FMC Static-Credential Zero-Day Hits CISA's KEV Catalog With August 1 Federal Patch Deadline
CISA added a Cisco Firewall Management Center static-credential flaw to its Known Exploited Vulnerabilities catalog, ordering federal agencies to patch by August 1.
Critical Gitea Flaw Lets a Self-Registered Account Turn a Git Patch Into Remote Code Execution
A critical Gitea vulnerability lets a repository writer convert a crafted patch into a live Git hook and run shell commands as the service account.
STAR Labs Researcher Uses AI to Turn a Linux Traffic-Control Race Condition Into a Root Exploit
A Singapore researcher disclosed CVE-2026-53264, an AI-assisted Linux kernel use-after-free that escalates local access to root on CentOS Stream 9.
JetBrains Patches Critical Unauthenticated RCE in TeamCity On-Premises, Its Third Distinct Vulnerability Batch This Summer
JetBrains fixed CVE-2026-63077, a 9.8-severity flaw letting unauthenticated attackers run OS commands on TeamCity servers via the agent polling protocol.
Over 24,650 Internet-Exposed Server BMCs Leak Password Hashes via 20-Year-Old IPMI Flaw
Researchers found 24,650 of 36,872 exposed server management interfaces disclose crackable password hashes before login, via a 2013 IPMI flaw still unpatched by Dell.
JFrog Uncovers PixelSmash, a 16-Year-Old FFmpeg Flaw Exploitable via a 50 KB Video File
JFrog researchers turned a 16-year-old FFmpeg decoder bug, CVE-2026-8461, into working remote-code-execution exploits against Jellyfin and Nextcloud using one 50 KB video file.
Arista Patches Maximum-Severity VeloCloud Orchestrator Zero-Day as Attackers Exploit It in the Wild
Arista patched a maximum-severity command injection flaw in VeloCloud Orchestrator that attackers were already exploiting; CISA gave federal agencies until July 30 to fix it.
UC San Diego Researchers Find Bluetooth Flaw in Dealer-Installed KARR and SWDS Car Alarms, Exposing 2.2 Million Vehicles
A shared Bluetooth key in dealer-installed KARR/SWDS anti-theft devices lets nearby attackers unlock or immobilize at least 2.2 million cars, UC San Diego researchers found.
16-Year-Old Linux KVM Flaw 'Januscape' Lets Guest VMs Escape to the Host on Intel and AMD Systems
A 16-year-old use-after-free bug in Linux's KVM hypervisor, dubbed Januscape and rated CVSS 8.8, lets malicious VMs escape to the host on both Intel and AMD systems; OVHcloud patched roughly a million VMs across its fleet in an 11-day campaign.
WordPress Forces Automatic Updates to Patch wp2shell, a Pre-Authentication RCE Chain in Core, as Public Exploits Circulate
WordPress shipped 7.0.2 and 6.9.5 on July 17 and enabled forced auto-updates to fix wp2shell, a two-CVE chain allowing unauthenticated remote code execution in core, as public proof-of-concept exploits circulate.
JetBrains Patches Critical Path-Traversal Flaw in IntelliJ IDEA, Five More Bugs Across TeamCity and YouTrack
JetBrains disclosed six vulnerabilities across IntelliJ IDEA, TeamCity, and YouTrack on July 16, led by a critical 9.8 CVSS path-traversal flaw in IntelliJ IDEA.
SonicWall Patches Two Chained SMA1000 Zero-Days as CISA Sets a July 17 Deadline for Federal Agencies
CVE-2026-15409 and CVE-2026-15410 were exploited together against SMA1000 appliances before patches shipped, CISA says.