Vulnerability Overview
Exploitation Activity
Exploitation Intelligence
Cisco's Secure Firewall Management Center (FMC) Software has two critical vulnerabilities, CVE-2026-20079 and CVE-2026-20316, that are currently being exploited by state-sponsored and ransomware actors. CVE-2026-20079, rated 10.0 on the CVSS scale, allows unauthenticated remote attackers to bypass a...
Google has released an emergency update for Chrome to address CVE-2026-85046, a high-severity zero-day vulnerability in the V8 JavaScript and WebAssembly engine, rated 8.8 on the CVSS scale. The flaw, identified as a type confusion issue, allows remote attackers to execute arbitrary code within Chro...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added several vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, including critical flaws in Microsoft Windows, Adobe, N-able, Cisco, Google Chromium, Fortinet, and Citrix. Notably, CVE-2026-75650, a critical Ado...
A new phishing campaign analyzed by Barracuda uses blob URLs to create malicious pages directly within victims' browsers, bypassing traditional detection methods. The attack begins with a DocuSign-themed email that includes a calendar invite, making it appear legitimate. Victims are redirected throu...