Vulnerability Overview
Exploitation Activity
Exploitation Intelligence
In July 2026, Adobe and Microsoft released significant security updates addressing numerous vulnerabilities. Adobe issued 12 bulletins for 88 unique CVEs, with a focus on ColdFusion and Commerce patches, including a CVSS 9.9 vulnerability. Microsoft reported a staggering 621 new CVEs, marking a reco...
In June 2026, Microsoft released its largest Patch Tuesday update, addressing 206 vulnerabilities, including critical flaws in Windows kernel and BitLocker. Notable CVEs include a zero-day in Visual Studio Code that could steal GitHub tokens. The updates are crucial for protecting a wide range of Mi...
On July 21, 2026, Microsoft released manual remediation guidance for Windows Server Update Services (WSUS) administrators facing synchronization issues. The problem, which began on July 13, 2026, has prevented the deployment of critical patches for two actively exploited zero-day vulnerabilities, CV...
Anthropic has announced the launch of Project Glasswing, utilizing its unreleased AI model, Claude Mythos Preview, to identify and exploit thousands of critical software vulnerabilities across major operating systems and web browsers. This model has demonstrated the ability to autonomously discover...