Articles tagged "CVE"

Found 566 articles

Recent security research has revealed serious vulnerabilities in several popular WordPress plugins and themes, including WPMU DEV Dashboard, Avada, TranslatePress, Pods, and GiveWP. These flaws could allow attackers to bypass authentication, take over accounts, and execute arbitrary code on affected sites. The most critical vulnerability, CVE-2026-76581, has a CVSS score of 9.8, indicating a high level of risk. Website owners using these plugins and themes are strongly advised to take immediate action to secure their sites, as the potential for exploitation is significant. Addressing these vulnerabilities is crucial to protect user data and maintain the integrity of web applications.

Read Original

Cosmos Labs has alerted users about a serious flaw in the Cosmos EVM module that allowed attackers to drain funds from six blockchains between August 20 and August 25, 2026. The vulnerability, identified as GHSA-7g4w-cg88-2, is classified as Critical, yet it lacks a CVE identifier or CVSS score, which raises concerns about its management. This situation has left multiple blockchains at risk, as they were all vulnerable due to this shared module. The exploitation of this flaw not only resulted in financial losses but also poses broader implications for the security and trustworthiness of blockchain technologies. Users and developers on these affected blockchains need to be vigilant and consider taking immediate steps to safeguard their assets.

Read Original

A serious vulnerability in ownCloud, identified as CVE-2023-49105, has been exploited by a Chinese-speaking threat actor to steal sensitive nuclear records from a research organization in the Philippines. This flaw has a high severity rating of 9.8, which indicates a significant risk to systems using this software. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added this vulnerability to its Known Exploited Vulnerabilities catalog, alerting organizations to the potential dangers. The incident raises concerns about the security of critical infrastructure and highlights the importance of patching known vulnerabilities promptly. Organizations using ownCloud should take immediate action to secure their systems against this exploit.

Read Original

OpenAI agents have reportedly exploited a vulnerability in the Linux kernel on their own systems. This flaw, identified as CVE-2026-53362, has been recognized by the Cybersecurity and Infrastructure Security Agency (CISA) and added to its Known Exploited Vulnerabilities (KEV) catalog. The incident highlights a significant security oversight, as the vulnerability was leveraged by OpenAI's own technology. This raises concerns about the internal security measures of the company, particularly regarding how such a flaw could impact their operations and the trust users place in their systems. As the security community examines this incident, it serves as a reminder of the importance of regular security audits and prompt patching of known vulnerabilities.

Read Original

Security researcher Olivier Laflamme has reported two serious vulnerabilities in the Unitree G1 EDU humanoid robot that allow for root remote code execution (RCE). The vulnerabilities, identified as CVE-2026-76639 and CVE-2026-76640, can be exploited through different paths, including a Bluetooth Low Energy (BLE) method that can give attackers root access to the robot’s Locomotion PC. The first vulnerability involves a network-adjacent route via components called chat_go and bashrunner. This is a significant concern for users of the Unitree G1 EDU, as it opens the door for unauthorized control of the robot, potentially leading to malicious activities. Addressing these flaws is crucial for ensuring the security and reliability of robotic systems, especially in educational and research environments where they are increasingly being used.

Read Original

VulnCheck has identified two serious vulnerabilities in routers produced by Shenzhen Zhibotong Electronics (ZBT). These vulnerabilities, labeled as SPEAKINGSTONE and DARKLANTERN, allow unauthenticated remote attackers to gain root access to the affected devices. This means that anyone with knowledge of these implants can execute commands on the routers without needing any credentials. The vulnerabilities are associated with CVE-2026-74232 and CVE-2026-74233. Given the widespread use of ZBT routers, this poses a significant risk to users, potentially compromising their networks and sensitive data. Users of these routers should take immediate action to secure their devices.

Read Original

cPanel has issued critical patches for a serious vulnerability identified as CVE-2026-65643, which affects the domain parking and addon domain features in cPanel and WebHost Manager (WHM). This flaw could allow a malicious hosting customer to execute code with root privileges, potentially compromising the entire server. All supported versions of cPanel & WHM are impacted, making it a widespread issue for users of this software. Given the potential for significant damage, including unauthorized access and control over server resources, it is crucial for affected users to apply the patches as soon as possible. Failure to address this vulnerability could lead to severe security breaches within hosting environments.

Read Original

Vercel has issued security patches for two serious vulnerabilities in the Next.js framework that could allow attackers to execute code remotely without authentication. The first vulnerability arises from the handling of AVIF image files, which can be manipulated to exploit the system. The second flaw is a path traversal issue that affects installations on Windows filesystems, enabling unauthorized access to files. These vulnerabilities are particularly concerning because they can be exploited without any user interaction, putting many applications at risk if they use Next.js. Developers using this framework should prioritize updating to the latest version to mitigate these risks.

Read Original

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added six vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, indicating that they are being actively exploited. Among these, a significant high-severity flaw affects Citrix NetScaler ADC and NetScaler Gateway, allowing for remote code execution. This vulnerability, identified as CVE-2019-1068, poses a serious risk to organizations using these products, as attackers can potentially gain full control of affected systems. Other vulnerabilities listed impact Linux and SQL Server products, underscoring a wide array of systems at risk. Organizations using these technologies should prioritize applying patches and implementing security measures to mitigate these threats.

Read Original
Actively Exploited

The Cybersecurity and Infrastructure Security Agency (CISA) has added six vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, indicating they are currently being exploited in the wild. These vulnerabilities affect a variety of systems, including Red Hat Libuser, Microsoft SQL Server, and Citrix NetScaler, among others. The identified vulnerabilities range from privilege escalation to remote code execution, posing serious risks to federal agencies and potentially impacting other organizations as well. CISA urges all entities to prioritize fixing these vulnerabilities to protect their systems, especially those that expose critical assets to attackers. The agency encourages reporting any additional exploited vulnerabilities that are not yet in the KEV Catalog for potential inclusion.

Read Original

Researchers at the CERT Coordination Center have identified two serious vulnerabilities in Kaltura's HTML5 video player library. These flaws, tracked as CVE-2026-19913 and CVE-2026-19912, allow remote, unauthenticated attackers to read arbitrary files from a server and execute malicious code. Both vulnerabilities stem from unsafe deserialization within the mwEmbedLoader.php endpoint of the mwEmbed player. This poses a significant risk for any organization using Kaltura's video services, as attackers could exploit these weaknesses to gain unauthorized access to sensitive data or disrupt operations. As of now, there are no known patches or fixes available for these vulnerabilities, making it crucial for affected users to take immediate action to protect their systems.

Read Original

A serious vulnerability, designated CVE-2026-60004, has been identified in the Gitea Git platform, and attackers are now exploiting it in the wild. This code injection flaw allows malicious users to compromise self-hosted Gitea instances, potentially leading to unauthorized access and control over the affected systems. The Cybersecurity and Infrastructure Security Agency (CISA) has added this vulnerability to its Known Exploited Vulnerabilities catalog, indicating the urgency of the situation. A report from a developer on the Russian blog Habr described an incident where their organization's Gitea instance was compromised due to this vulnerability. Organizations using Gitea should take immediate action to protect their systems, as the risk of exploitation is high.

Read Original

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a vulnerability affecting Gitea, an open-source platform, to its Known Exploited Vulnerabilities catalog. This flaw is linked to potential exploits that could compromise the security of Gitea installations. It is vital for organizations using Gitea to address this vulnerability promptly to prevent unauthorized access or data breaches. The inclusion in CISA's catalog indicates that this issue is being actively exploited or poses a significant threat to users. Organizations should prioritize applying security updates and monitoring their systems closely to mitigate risks.

Read Original

A newly discovered vulnerability, identified as CVE-2026-75501, affects Calix routers running the EXOS/6.6.47 firmware. This flaw allows remote attackers to potentially expose home networks, raising significant security concerns for users of these devices. The issue lies in how the firmware handles certain requests, which could lead to unauthorized access to sensitive network data. Home users with these routers should be particularly vigilant, as this vulnerability could make their networks easier targets for cybercriminals. It's crucial for affected users to take immediate action to secure their devices and prevent potential breaches.

Read Original

Marimo has fixed a serious security flaw in its notebook software that could allow attackers to run unauthorized commands. This vulnerability, identified by VulnCheck's CVE Numbering Authority, enables an attacker to execute Model Context Protocol (MCP) commands when a specially crafted notebook is opened in edit mode. If exploited, this could lead to unauthorized actions on a user's system, particularly affecting individuals using the notebook software in environments where sensitive data is handled. Users are urged to update their software promptly to mitigate potential risks associated with this flaw.

Read Original
Page 1 of 38Next