Vulnerabilities
120 articles RSS
JFrog Uncovers PixelSmash, a 16-Year-Old FFmpeg Flaw Exploitable via a 50 KB Video File
JFrog researchers turned a 16-year-old FFmpeg decoder bug, CVE-2026-8461, into working remote-code-execution exploits against Jellyfin and Nextcloud using one 50 KB video file.
Arista Patches Maximum-Severity VeloCloud Orchestrator Zero-Day as Attackers Exploit It in the Wild
Arista patched a maximum-severity command injection flaw in VeloCloud Orchestrator that attackers were already exploiting; CISA gave federal agencies until July 30 to fix it.
UC San Diego Researchers Find Bluetooth Flaw in Dealer-Installed KARR and SWDS Car Alarms, Exposing 2.2 Million Vehicles
A shared Bluetooth key in dealer-installed KARR/SWDS anti-theft devices lets nearby attackers unlock or immobilize at least 2.2 million cars, UC San Diego researchers found.
16-Year-Old Linux KVM Flaw 'Januscape' Lets Guest VMs Escape to the Host on Intel and AMD Systems
A 16-year-old use-after-free bug in Linux's KVM hypervisor, dubbed Januscape and rated CVSS 8.8, lets malicious VMs escape to the host on both Intel and AMD systems; OVHcloud patched roughly a million VMs across its fleet in an 11-day campaign.
WordPress Forces Automatic Updates to Patch wp2shell, a Pre-Authentication RCE Chain in Core, as Public Exploits Circulate
WordPress shipped 7.0.2 and 6.9.5 on July 17 and enabled forced auto-updates to fix wp2shell, a two-CVE chain allowing unauthenticated remote code execution in core, as public proof-of-concept exploits circulate.
JetBrains Patches Critical Path-Traversal Flaw in IntelliJ IDEA, Five More Bugs Across TeamCity and YouTrack
JetBrains disclosed six vulnerabilities across IntelliJ IDEA, TeamCity, and YouTrack on July 16, led by a critical 9.8 CVSS path-traversal flaw in IntelliJ IDEA.
SonicWall Patches Two Chained SMA1000 Zero-Days as CISA Sets a July 17 Deadline for Federal Agencies
CVE-2026-15409 and CVE-2026-15410 were exploited together against SMA1000 appliances before patches shipped, CISA says.
Coinspect Discloses 'Ill Bloom' Flaw That Has Drained at Least $5 Million From Weak-Randomness Crypto Wallets
Coinspect says a weak-randomness flaw in recovery-phrase generation, dubbed Ill Bloom, has let attackers drain at least $5 million from crypto wallets since May 27.
JetBrains Patches Critical Hub Authentication Bypass and Account Takeover Flaws Across Its IDE Ecosystem
JetBrains patched three critical Hub and YouTrack flaws enabling account takeover and authentication bypass, alongside code-execution fixes across IntelliJ, GoLand, and TeamCity.
Adobe Patches Seven Maximum-Severity ColdFusion and Campaign Classic Flaws, Each Rated CVSS 10.0 for Code Execution
Adobe's July 1 updates fix seven CVSS 10.0 flaws—six in ColdFusion, one in on-premises Campaign Classic—that can lead to arbitrary code execution.
CISA Sets a July 2 Deadline as SimpleHelp Auth-Bypass Flaw CVE-2026-48558, Rated CVSS 10, Is Exploited to Deploy Djinn Stealer
A perfect-score authentication bypass in SimpleHelp's OIDC login is being exploited in the wild to deploy TaskWeaver and Djinn Stealer, prompting CISA to give federal agencies until July 2 to patch.
CISA Adds Actively Exploited SharePoint RCE CVE-2026-45659 to KEV, Giving Federal Agencies Three Days to Patch
A deserialization flaw in on-premises SharePoint, patched in May, is now confirmed under active exploitation, with a July 4 federal deadline.