Related Threat Clusters
-
Critical Exploitation of Sangoma Switchvox Vulnerabilities Underway
Sangoma Switchvox SMB Edition 8.3 is facing active exploitation of multiple vulnerabilities, particularly CVE-2026-9586, which allows unauthenticated SQL injection leading to remote code execution. The flaw can be…
11 articles · Updated September 2, 2026 -
Critical Vulnerability in HTTP-Daemon Affects Multiple Ubuntu Releases
A security vulnerability has been identified in the HTTP-Daemon affecting various Ubuntu versions, including 26.04 LTS and earlier releases down to 14.04 LTS. The flaw allows remote attackers to execute arbitrary…
2 articles · Updated June 10, 2026 -
Critical Vulnerabilities in Mageia Perl Packages Addressed
Mageia has released updates for several Perl packages to address critical security vulnerabilities. Notable issues include CVE-2026-14803, which allows memory exhaustion in Mojo::JSON versions before 9.47, and…
6 articles · Updated July 19, 2026 -
Critical HTTP Request Smuggling Vulnerability in Starman Web Server
A critical vulnerability has been identified in Starman versions prior to 0.4018, allowing HTTP Request Smuggling due to improper header precedence. The issue arises when both 'Content-Length' and 'Transfer-Encoding:…
4 articles · Updated May 8, 2026 -
Critical Vulnerability in HTML-Parser Exposes Sensitive Information
A critical vulnerability has been identified in the HTML-Parser library used in various Ubuntu versions. The flaw arises from improper handling of entity references, allowing attackers to potentially access sensitive…
2 articles · Updated July 22, 2026 -
Multiple Vulnerabilities Discovered in Perl Affecting Security and Stability
Recent vulnerabilities in Perl have been identified, allowing potential attackers to exploit various flaws. Key issues include improper handling of source addresses in the Socket module (CVE-2026-12087), incorrect…
6 articles · Updated August 27, 2026 -
Critical Remote Code Execution Vulnerability in Fedora's perl-Net-DNS
Fedora has released an advisory for a critical vulnerability in the perl-Net-DNS module affecting versions 1.53 to 1.56. The vulnerabilities, identified as CVE-2026-64193 and CVE-2026-64194, allow for remote code…
2 articles · Updated September 10, 2026 -
Critical cPanel SQL Injection Vulnerability Allows Root Access
cPanel disclosed a critical SQL injection vulnerability, tracked as CVE-2026-67401, affecting its EmailTrack functionality. An authenticated user with mail privileges can exploit this flaw to create arbitrary files on…
5 articles · Updated September 9, 2026 -
Critical Vulnerabilities in Oracle Coherence and Access Manager Disclosed
Multiple vulnerabilities affecting Oracle Coherence and Oracle Access Manager have been disclosed. CVE-2026-60248 and CVE-2026-60295 are critical vulnerabilities in Oracle Coherence, allowing attackers to potentially…
10 articles · Updated July 23, 2026 -
Fedora 42 and 43 perl-YAML-Syck Buffer Overflow Vulnerabilities
Fedora versions 42 and 43 are affected by high-severity vulnerabilities in the perl-YAML-Syck module, specifically versions up to and including 1.36. These vulnerabilities include a heap buffer overflow in the YAML…
2 articles · Updated March 31, 2026
Recent Intelligence Reports
- Fedora 44 perl-Net-DNS Critical Remote Code Injection DoS 2026 — Linuxsecurity · September 10, 2026
- Exploit for CVE-2026 — Sploitus · September 9, 2026
- Switchvox Post — labs.sra.io · September 2, 2026
- USN-8684-1: Perl vulnerabilities — Ubuntu · August 27, 2026
- Fedora 43 Perl-Mojolicious Important CSRF Token Fix FEDORA-2026 — Linuxsecurity · July 28, 2026
- Oracle Issues Record-Breaking July 2026 Security Update with 1,449 Patches BeyondMachines / 4h This release, issued on July 21, 2026, delivers 1,449 new security patches across dozens of product families, patching vulnerabilities in both Oracle's own code and the third-party components bundled within its products. A large concentration of critical flaws affects Oracle Fusion Middleware, which alone received 355 patches, 219 of them remotely exploitable without credentials. — beyondmachines.net · July 23, 2026
- Ubuntu 26.04 LTS HTML-Parser Critical Info Exposure USN-8587 — Linuxsecurity · July 22, 2026
- Mageia 10 perl-Mojolicious Critical Memory Exhaustion Fix CVE-2026 — Linuxsecurity · July 19, 2026