Related Threat Clusters
-
SAP Releases January 2026 Security Patches for Critical Vulnerabilities
On January 13, 2026, SAP issued 17 new security notes during its monthly Security Patch Day, addressing critical injection flaws and remote code execution vulnerabilities in key products. Organizations are urged to…
6 articles · Updated January 13, 2026 -
Critical SQL Injection and XSS Vulnerabilities in RoundcubeMail Affect Fedora Users
Recent updates to RoundcubeMail for Fedora 43 and 44 revealed critical vulnerabilities, including SQL injection and cross-site scripting (XSS) issues. CVE-2026-48842 details a pre-auth SQL injection in the…
2 articles · Updated June 4, 2026 -
Critical Langflow RCE Vulnerability Exploited Within 20 Hours
A critical vulnerability in Langflow, tracked as CVE-2026-33017, allows unauthenticated remote code execution (RCE) via the POST /api/v1/build_public_tmp/{flow_id}/flow endpoint. This flaw was exploited within 20 hours…
17 articles · Updated March 20, 2026 -
Critical Ivanti EPMM Vulnerabilities Under Active Exploitation
Two critical vulnerabilities in Ivanti's Endpoint Manager Mobile (EPMM), CVE-2026-1281 and CVE-2026-1340, have been actively exploited in the wild, allowing unauthenticated remote code execution (RCE) with a CVSS score…
64 articles · Updated January 29, 2026 -
SUSE Dracut Vulnerability CVE-2026-6893 Allows Root Code Execution via DHCP Injection
A critical vulnerability, CVE-2026-6893, has been identified in SUSE's dracut, allowing root code execution through DHCP options command injection. This flaw affects multiple SUSE Linux Enterprise products, including…
7 articles · Updated July 1, 2026 -
SAP Patch Day Addresses Critical Vulnerabilities
On March 10, 2026, SAP released 15 security notes, including two critical vulnerabilities that could allow remote code execution and system compromise. Administrators are urged to apply the patches promptly to protect…
10 articles · Updated March 10, 2026 -
Critical RCE Vulnerabilities Discovered in Apache ActiveMQ Management Interfaces
CVE-2026-34197, a high-severity remote code execution vulnerability, affects Apache ActiveMQ Classic due to unsafe exposure of the Jolokia HTTP/JMX management interface. Attackers can exploit this flaw to execute…
5 articles · Updated June 1, 2026 -
Multiple Vulnerabilities in Claude Code Expose Users to Security Risks
Claude Code, an agentic coding tool by Anthropic, has been found to have multiple vulnerabilities affecting various versions. CVE-2026-33068 allows attackers to bypass the trust dialog, enabling arbitrary tool execution…
5 articles · Updated April 30, 2026 -
SAP Addresses Critical Vulnerabilities in Commerce Cloud and S/4HANA
On May 12, 2026, SAP released security updates for 15 vulnerabilities, including two critical flaws in Commerce Cloud and S/4HANA. The first critical vulnerability (CVE-2026-34263) allows unauthenticated attackers to…
6 articles · Updated May 12, 2026 -
Multiple CVEs Discovered in NVIDIA Megatron and Other Products
On March 24, 2026, two critical vulnerabilities were published: CVE-2025-33248 and CVE-2026-33336. CVE-2025-33248 affects NVIDIA Megatron-LM, allowing remote code execution through a maliciously crafted file. This…
3 articles · Updated March 24, 2026
Recent Intelligence Reports
- ServiceNow Patches Max-Severity AI Platform Flaws; Urgent Enterprise Action Needed — Techgig · August 29, 2026
- Opera Browser Adds Native Paste Protect to Stop Clipboard Hijacking and Code Injection Attacks — Gbhackers · July 2, 2026
- SUSE Linux Micro 6.2 dracut Important Code Injection Vuln 2026-22273 — Linuxsecurity · June 29, 2026
- Snyk VulnBench JS 1.0: LLM Bug Repeatability — Snyk · June 29, 2026
- Fedora 43 Roundcube Webmail Important XSS SQL Issues 2026 — Linuxsecurity · June 4, 2026
- CVE-2026-45505 Detail — Nvd.Nist · June 1, 2026
- SAP fixes critical vulnerabilities in Commerce Cloud and S/4HANA — Bleepingcomputer · May 12, 2026
- CVE-2025-59536 — nvd.nist.gov · April 30, 2026