Articles tagged "Critical"

Found 725 articles

A serious vulnerability has been found in Gogs, a widely used open-source Git service that allows users to host their own repositories. This flaw, which has a CVSS score of 9.4, enables any authenticated user to execute arbitrary code, potentially giving them full control over the server. This means that individuals with valid access can exploit this weakness to run malicious commands, posing a significant risk to the integrity and security of the affected systems. Currently, there is no CVE identifier linked to this vulnerability, which may complicate tracking and response efforts. Users of Gogs should be particularly vigilant and consider implementing immediate security measures to mitigate potential exploitation.

Impact: Gogs self-hosted Git service
Remediation: Users should apply security patches as they become available and review access controls to limit authenticated user privileges.
Read Original

A recently identified vulnerability in FortiClient Endpoint Management Server (EMS), tracked as CVE-2026-35616, is being actively exploited to deploy information-stealing malware, according to a report from Arctic Wolf. This flaw has a high severity rating of 9.1 and allows attackers to execute remote code without needing authentication, making it particularly dangerous. Organizations using FortiClient EMS should be on high alert as the vulnerability can be exploited through specially crafted requests. The vulnerability was patched in April, but the ongoing exploitation highlights the importance of timely updates and monitoring for suspicious activity. Companies must ensure they have applied the latest patches to protect their systems from these attacks.

Impact: FortiClient Endpoint Management Server (EMS)
Remediation: Organizations should apply the patch released in April to FortiClient EMS to mitigate the vulnerability. Regularly monitor systems for any unauthorized access or unusual activity.
Read Original

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning to federal agencies, giving them only four days to patch a serious vulnerability in the LiteSpeed cPanel user-end plugin. This flaw is currently being exploited in active attacks, raising significant concerns about the security of servers using this software. Agencies are urged to take immediate action to protect their systems from potential breaches. The situation emphasizes the need for quick responses to known vulnerabilities, especially in government infrastructure, where the impact of a security breach could be severe. Failure to address this could lead to unauthorized access and data compromise.

Impact: LiteSpeed cPanel user-end plugin
Remediation: Federal agencies must apply patches to the LiteSpeed cPanel user-end plugin within four days to mitigate the vulnerability.
Read Original

The Dutch government has blocked Kyndryl's €100 million bid to acquire Solvinity, a company that manages important digital infrastructure, including the DigiD platform used for online government services. The decision is rooted in national security concerns, emphasizing the sensitivity of critical digital systems to foreign ownership. Kyndryl, an American IT firm, was interested in Solvinity to enhance its capabilities in the European market, but the Dutch authorities prioritized safeguarding their digital sovereignty. This incident reflects growing scrutiny over foreign investments in essential technology sectors, particularly in Europe, where governments are increasingly wary of potential risks to national security. The outcome may influence future foreign acquisitions in the tech space across Europe.

Impact: DigiD platform, Solvinity
Remediation: N/A
Read Original

Microsoft has identified a serious vulnerability in SharePoint, labeled CVE-2026-45659, which has a CVSS score of 8.8. This flaw allows attackers to execute remote code with minimal effort, posing a significant risk to organizations using the platform. The vulnerability does not require complicated conditions for exploitation, which increases its potential impact. Microsoft has released security updates to address this issue, and users are strongly advised to apply these patches as soon as possible to protect their systems. Ignoring this vulnerability could lead to unauthorized access and control over affected SharePoint environments.

Impact: Microsoft SharePoint (specific versions not specified)
Remediation: Users should apply the latest security updates provided by Microsoft to patch CVE-2026-45659. Specific patch numbers or version details were not mentioned.
Read Original

Hackers have taken advantage of a zero-day vulnerability in the KnowledgeDeliver learning management system (LMS) to install a malicious web shell known as Godzilla. This security flaw allows attackers to gain unauthorized access to systems running this LMS, potentially compromising sensitive data and disrupting services. Organizations using KnowledgeDeliver should be particularly vigilant, as the exploitation of this vulnerability could lead to significant operational and data security issues. The presence of a web shell means that attackers can execute commands remotely, making it crucial for affected users to take immediate action to secure their systems. Companies must prioritize patching and monitoring their environments to mitigate the risks associated with this exploit.

Impact: KnowledgeDeliver learning management system
Remediation: Users should apply any available patches from KnowledgeDeliver and closely monitor their systems for unauthorized access. Regular security assessments and updates are recommended.
Read Original

A serious vulnerability in Universal Robots' PolyScope operating system has been identified, allowing potential attackers to execute commands remotely. This flaw, tracked as CVE-2026-8153, has a high severity rating of 9.8, indicating a significant risk. It affects all versions of PolyScope software prior to 5.25.1, which means any users operating older versions are at risk. The ability for remote command execution could enable unauthorized access to connected systems, posing a threat to operational security. Users and organizations utilizing Universal Robots' systems need to take immediate action to update their software to the latest version to mitigate this risk.

Impact: Universal Robots PolyScope OS versions prior to 5.25.1
Remediation: Update PolyScope software to version 5.25.1 or later.
Read Original
Claude Mythos AI Identified 10,000+ Software Vulnerabilities in One Month

Hackread – Cybersecurity News, Data Breaches, AI and More

Anthropic's Claude Mythos AI has reportedly identified over 10,000 software vulnerabilities in just one month, with a notable number of these flaws found in open-source code. This discovery raises significant concerns for developers and organizations relying on open-source software, as these vulnerabilities could be exploited by malicious actors if not addressed promptly. The identified flaws range from minor issues to critical vulnerabilities, potentially affecting a wide array of software applications. This highlights the importance of continuous security assessments and the need for developers to prioritize vulnerability management in their software supply chains. With software vulnerabilities being a common entry point for cyberattacks, organizations should take immediate action to patch any flaws identified by AI tools like Claude Mythos.

Impact: Open-source software, various software applications
Remediation: Organizations should prioritize patching identified vulnerabilities and conduct regular security audits of their software.
Read Original

Nimbus Manticore, an Iranian advanced persistent threat (APT) group, has been actively targeting aviation and software companies using updated tools. This activity has persisted during and after the recent US military actions against Iran, indicating a sustained effort by the group to exploit vulnerabilities within these sectors. The attacks raise concerns about the security of critical infrastructure and sensitive data in industries that are vital to national security and economic stability. Companies in the aviation and software fields should be on high alert and enhance their security measures to defend against these sophisticated threats. The ongoing nature of these operations suggests that the APT is evolving its tactics and tools, which could lead to more significant breaches if not addressed promptly.

Impact: Aviation and software companies
Remediation: Companies should enhance their security measures and monitor for suspicious activity.
Read Original

Multi-factor authentication (MFA) was designed to enhance security by requiring users to provide a second form of verification, making it harder for attackers to gain access to accounts. However, researchers have found that some attackers are using a technique called MFA prompt bombing, where they bombard users with repeated authentication requests until they inadvertently approve one. This method takes advantage of users being overwhelmed and mistakenly granting access. As a result, organizations that rely solely on MFA may be putting themselves at risk, as this approach can easily bypass the intended security measures. It's essential for companies to educate their employees about this tactic and consider additional security layers to protect against unauthorized access.

Impact: Multi-factor authentication systems, various online accounts and services using MFA
Remediation: Users should be educated about MFA prompt bombing and organizations should implement additional security measures beyond MFA.
Read Original

The Indian Computer Emergency Response Team (CERT-In) has announced new guidelines urging organizations to address critical security vulnerabilities in publicly accessible systems within 12 hours of detection. This recommendation comes in response to concerns that cybercriminals are using artificial intelligence tools and large language models to automate the discovery and exploitation of these vulnerabilities. By acting quickly to patch these flaws, organizations can better protect themselves from potential attacks. This move is particularly important as the threat landscape evolves with AI capabilities, making it easier for attackers to launch sophisticated cyber operations. Companies and IT teams are encouraged to prioritize these updates to enhance their security posture.

Impact: Internet-facing systems, organizations with critical vulnerabilities
Remediation: Patch critical vulnerabilities within 12 hours of detection where feasible.
Read Original

The Cybersecurity and Infrastructure Security Agency (CISA) has mandated that U.S. government agencies address a critical SQL injection vulnerability in the Drupal content management system by Wednesday evening. This vulnerability, which has been flagged as actively exploited, poses a significant risk to the security of servers running Drupal. Government organizations must act swiftly to protect their systems from potential attacks that could exploit this weakness. The urgency of this directive highlights the ongoing challenges faced by agencies in maintaining secure web platforms, especially as attackers increasingly target widely used software like Drupal. Ensuring that these systems are patched is essential to safeguard sensitive data and maintain operational integrity.

Impact: Drupal content management system (CMS), affected versions not specified.
Remediation: CISA has ordered agencies to patch their servers against the SQL injection vulnerability by a specified deadline.
Read Original

U.S. state governments are ramping up their cybersecurity efforts to better protect local communities and critical services. Many states are establishing their own cyber defense programs, which include initiatives like cybersecurity clinics and regional security operations centers (RSOCs). These programs aim to reduce costs and enhance the cybersecurity workforce, ultimately improving the resilience of local infrastructures against cyber threats. As of April 2026, states are also looking to share services and centralize procurement to better manage cyber risks. This shift reflects a growing recognition of the importance of state-level involvement in safeguarding against increasing cyber threats.

Impact: N/A
Remediation: N/A
Read Original

Anthropic's Mythos has identified around 23,000 potential vulnerabilities across 1,000 open-source software (OSS) projects. Among these, many have been confirmed as critical or high-severity issues, suggesting a significant risk to software security. As this number is expected to rise, it poses a serious concern for developers, companies, and users relying on these OSS projects. The findings highlight the need for heightened scrutiny and proactive measures to secure software environments. Open-source projects often rely on community contributions, which can lead to oversight in vulnerability management, making this situation particularly urgent.

Impact: 1,000 open-source software projects
Remediation: Developers should assess their projects for identified vulnerabilities and apply necessary patches or updates as they become available.
Read Original

A significant security vulnerability has been identified in Ghost CMS, specifically a SQL injection flaw labeled CVE-2026-26980. Attackers are exploiting this weakness to inject harmful JavaScript code, which activates ClickFix attack flows across numerous websites utilizing this content management system. This exploitation poses a serious risk to users by potentially compromising their data and functionality of affected sites. Ghost CMS users, particularly those running outdated versions, should take immediate action to secure their systems. This incident highlights the ongoing need for vigilance in web security and the importance of keeping software up to date.

Impact: Ghost CMS versions vulnerable to CVE-2026-26980
Remediation: Users should update their Ghost CMS to the latest version that addresses CVE-2026-26980. Regularly applying security patches and monitoring for unusual activity can help mitigate risks associated with SQL injection vulnerabilities.
Read Original
Page 1 of 49Next