Skip to content

CVE-2026-54411

CVE

Threat entity extracted from intelligence sources

Frequency
3
occurrences
First Seen
June 15, 2026
Last Seen
September 3, 2026
API
Exploited in Wild
Ransomware Use
Public Exploits
Attack Vector

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

A newly published CVE-2026-54411 details a vulnerability in Linux-PAM versions up to 1.7.2. The issue lies in the pam_userdb module's plaintext-password comparison, which has an observable timing discrepancy. This flaw allows local or network-adjacent attackers to recover plaintext passwords by meas...

Oracle has released multiple security updates for its Linux distributions, addressing several critical vulnerabilities. Key updates include patches for CVE-2026-59090 and CVE-2026-18301 in GIMP, and multiple CVEs in FreeRDP, libssh, and Grafana. Affected systems include Oracle Linux 8, 9, and 10, wi...

SUSE has released updates addressing a critical buffer overflow vulnerability (CVE-2026-25506) in the munge package, affecting multiple SUSE Linux versions. The vulnerability, which was published on February 10, 2026, could allow for potential exploitation if not patched. Users are advised to apply...

Public Exploits

Checking GitHub for proof-of-concept code…