Related Threat Clusters
-
Critical SonicWall SMA1000 Vulnerabilities Under Active Exploitation
SonicWall has reported two critical vulnerabilities, CVE-2026-15409 and CVE-2026-15410, affecting its SMA1000 Series appliances, which are currently being actively exploited. The first vulnerability, CVE-2026-15409, is…
50 articles · Updated July 15, 2026 -
Critical Zero-Day Vulnerability CVE-2026-20182 Exploited in Cisco SD-WAN Systems
Cisco has disclosed a critical authentication bypass vulnerability, CVE-2026-20182, affecting its Catalyst SD-WAN Controller and Manager. This flaw allows unauthenticated remote attackers to bypass authentication and…
131 articles · Updated May 14, 2026 -
Critical Exploitation of Cisco CM and Samsung KNOX Vulnerabilities
Active exploitation of two critical vulnerabilities has been reported: CVE-2026-20230 in Cisco Unified CM and CVE-2026-20971 in Samsung KNOX. The Cisco flaw, a server-side request forgery (SSRF), poses an immediate…
4 articles · Updated June 23, 2026 -
Lazarus Group Exploits Windows Zero-Day to Target Defense Sector
The North Korean hacking group Lazarus exploited a zero-day vulnerability (CVE-2026-68820) in the Windows Ancillary Function Driver for WinSock (afd.sys) to gain SYSTEM-level access to defense sector systems. This…
33 articles · Updated August 12, 2026 -
Critical RCE Vulnerability in Oracle PeopleSoft Exploited by SHADOW-AETHER-015
A pre-authentication remote code execution (RCE) vulnerability, CVE-2026-35273, was discovered in Oracle PeopleSoft PeopleTools, affecting versions 8.61 and 8.62. The vulnerability allows unauthenticated attackers to…
5 articles · Updated June 18, 2026 -
Multiple Critical Vulnerabilities Exploited in SonicWall and SharePoint Systems
In July 2026, several critical vulnerabilities were exploited, impacting SonicWall SMA1000 appliances and SharePoint servers. Two zero-day vulnerabilities, CVE-2026-15409 and CVE-2026-15410, were discovered in SonicWall…
2 articles · Updated July 28, 2026 -
Critical SQL Injection and XSS Vulnerabilities in RoundcubeMail Affect Fedora Users
Recent updates to RoundcubeMail for Fedora 43 and 44 revealed critical vulnerabilities, including SQL injection and cross-site scripting (XSS) issues. CVE-2026-48842 details a pre-auth SQL injection in the…
2 articles · Updated June 4, 2026 -
Apache Syncope Vulnerabilities Enable Remote Code Execution and Privilege Escalation
Apache Syncope has released critical updates to address six vulnerabilities, including remote code execution (RCE) and SQL injection flaws. The vulnerabilities affect versions 4.1, 4.0, and 3.0 of the Syncope identity…
2 articles · Updated July 24, 2026 -
Critical Vulnerabilities in Fluentd Enable Remote Code Execution and SSRF
Fluentd v1.19.3 addresses multiple vulnerabilities, including a critical RCE flaw tracked as CVE-2026-44024. These vulnerabilities can allow unauthenticated remote attackers to execute arbitrary code, access sensitive…
5 articles · Updated July 1, 2026 -
Microsoft's Record Patch Tuesday in June 2026 Addresses 206 Vulnerabilities
In June 2026, Microsoft released its largest Patch Tuesday update, addressing 206 vulnerabilities, including critical flaws in Windows kernel and BitLocker. Notable CVEs include a zero-day in Visual Studio Code that…
226 articles · Updated July 1, 2026
Recent Intelligence Reports
- NLTK Mass Disclosure — 4 CVEs, Peak 9.8 (Allowlisted Pickle RCE) ThreatAft — Cybersecurity Intelligence / 12h A mass disclosure of four CVEs across versions before 3.10.3 just dropped, with CVE-2026-79657 leading at CVSS 9.8 — an unsafe pickle deserialization vulnerability where allowlisted pickle loaders trust entire module namespaces, allowing arbitrary code execution via crafted model files. CVSS 9.8 — Critical pickle deserialization RCE — CVE-2026-79657 allows attackers to execute arbitrary — threataft.com · August 26, 2026
- CVE-2026-69855 - Microsoft Copilot in Azure Information Disclosure Vulnerability Latest Vulnerabilities / 1d CVE ID : CVE-2026-69855 Published : Aug. 20, 2026, 10:18 p.m. 3 hours, 39 minutes ago Description : Server-side request forgery (ssrf) in Microsoft Copilot in Azure allows an authorized attacker to disclose information over a network. Severity: 7.7 HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more... — cvefeed.io · August 22, 2026
- Threataft Blog News Aug 21, 2026 CVE-2026-65801: Microsoft Exchange Online SSRF - CVSS 10 threataft.com Open source — threataft.com · August 21, 2026
- Cvefeed High Severity Advisories Aug 21, 2026 CVE-2026-69502 - Azure SQL Database Elevation of Privilege Vulnerability cvefeed.io Open source — cvefeed.io · August 21, 2026
- CVE-2026-69855 - Exploits & Severity — Feedly · August 21, 2026
- Microsoft fixes critical CVSS 10 cloud flaws, including Exchange Online SSRF — Mallory.Ai · August 21, 2026
- Falla crítica en MLflow bajo explotación activa — Ciberseguridadlatam · August 21, 2026
- Untitled report — Ciberseguridadlatam · August 21, 2026