24h | 7d | 30d

Overview

  • Cisco
  • Cisco Unified Communications Manager

03 Jun 2026
Published
04 Jun 2026
Updated

CVSS v3.1
HIGH (8.6)
EPSS
25.85%

KEV

Description

A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) could allow an unauthenticated, remote attacker to conduct server-side request forgery (SSRF) attacks through an affected device. This vulnerability is due to improper input validation for specific HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to write files to the underlying operating system that could be used later to elevate to root. Note: Cisco has assigned this security advisory a Security Impact Rating (SIR) of Critical rather than High as the score indicates. The reason is that exploitation of this vulnerability could result in an attacker elevating privileges to root. Note: To exploit this vulnerability, the WebDialer service must be enabled. WebDialer is disabled by default.

Statistics

  • 17 Posts
  • 4 Interactions

Last activity: 2 hours ago

Fediverse

Profile picture fallback
  • 0
  • 0
  • 2
  • 19h ago
Profile picture fallback

Eight-Year-Old Samsung KNOX Flaw Exposed Millions of Galaxy Devices to Kernel Attacks
Source URL: securityweek.com/eight-year-ol
Researchers disclosed a high-severity use-after-free (UAF) race condition flaw (CVE-2026-20971, CVSS 7.8) affecting Samsung Galaxy S9 through S25 devices. The bug resides in the interaction between the kernel's process authenticator (PROCA) and its integrity subsystem (FIVE), leaving a tiny preemption window open during child process spawning that attackers can exploit to compromise the kernel.
Mythos Discovers 'Squidbleed,' a Memory Leak That's Gone Undetected Since Clinton Era
Source URL: theregister.com/security/2026/
A 29-year-old vulnerability dubbed "Squidbleed" (CVE-2026-47729) was discovered in the popular open-source caching proxy server Squid using Anthropic's Claude Mythos Preview AI. The flaw silently leaks users' plaintext HTTP requests, credentials, and session tokens, posing significant data exposure risks across enterprise networks and older legacy environments. It was resolved in version 7.6.
FortiBleed-kyberhyökkäyskampanjan vaikutukset näkyvät myös Suomessa
Source URL: kyberturvallisuuskeskus.fi/fi/
The global FortiBleed cyberattack campaign heavily impacts Fortinet FortiGate firewalls and SSL-VPN appliances using previously leaked or stolen credentials. The Finnish National Cyber Security Centre (Kyberturvallisuuskeskus) has begun mapping targeted organizations across Finland and releasing remediation guidelines to counter ongoing unauthorized access attempts.
CVE-2024-40766: The Patch Fixed the Bug. Nobody Fixed the Configuration.
Source URL: isc.sans.edu/diary/rss/33094
Despite a 2024 patch for an improper access control flaw (CVE-2024-40766, CVSS 9.3) impacting SonicWall Gen 5, 6, and 7 firewalls, ransomware operators continue to successfully compromise networks due to unmanaged configurations. The vulnerability targets the management interface and SSLVPN services, allowing threat actors to drop entire networks or gain complete device control.
New macOS ClickFix Attack Silently Mounts DMGs to Push Infostealer
Source URL: bleepingcomputer.com/news/secu
A novel macOS ClickFix social engineering campaign tricks users into running malicious Terminal commands via fake CAPTCHA verification prompts. Upon execution, the script uses the native hdiutil utility to silently download, mount, and execute a disk image (DMG) bundle containing the Atomic macOS Stealer (AMOS), harvesting browser credentials, system Keychains, and crypto wallet data.
'Cordyceps': Mushrooming Malicious Pull Requests Threaten Developer Workflows
Source URL: darkreading.com/application-se
Dubbed "Cordyceps," a newly identified architectural weakness within automated CI/CD pipelines allows malicious pull requests to compromise software supply chains. By exploiting overly permissive access controls in automated pre-merge testing workflows, attackers can execute command injection to hijack highly privileged signing keys and access tokens.
The Global Namespace Risk: Universal Bucket Hijacking Technique for Cloud Data Exfiltration
Source URL: unit42.paloaltonetworks.com/cl
Palo Alto Networks Unit 42 uncovered a structural flaw across AWS, Google Cloud, and Microsoft Azure involving global namespace collision. Attackers can silently hijack an organization's active cloud data streams by anticipating, deleting, and immediately recreating targeted storage buckets under their own control, leaving minimal detection signatures during data exfiltration.
LastPass Confirms Data Breach in Klue Supply Chain Attack
Source URL: bleepingcomputer.com/news/secu
LastPass suffered a security breach impacting its corporate Salesforce environment after threat actors stole OAuth tokens from Klue, a third-party market intelligence platform. While customer password vaults and internal core infrastructure remain fully isolated and untouched, the attackers successfully extracted internal corporate CRM data, customer names, and support log information.
Tata Electronics Confirms Cyberattack After Alleged Apple, Tesla Documents Appear Online
Source URL: therecord.media/tata-electroni
Indian manufacturing giant Tata Electronics confirmed a recent network breach following claims by extortion group "World Leaks," who published stolen documents allegedly detailing proprietary client data from Apple and Tesla. Tata maintains that the incident was isolated, successfully contained, and has caused zero operational downtime.
Payouts King Ransomware Initial Access Broker Deploys New Edgecution Malware
Source URL: zscaler.com/blogs/security-res
Zscaler ThreatLabz isolated a stealthy delivery mechanism dubbed "Edgecution," deployed by initial access brokers linked to the Payouts King ransomware family. The attack abuses a malicious Microsoft Edge browser extension that manipulates the Chrome native messaging protocol to bypass browser sandboxing entirely, triggering arbitrary local file system modification and execution.
AI Models Capable of Launching Major Cyberattacks Months Away, Five Eyes Alliance Warns
Source URL: cybersecuritydive.com/news/ai-
An international intelligence coalition comprising the United States, United Kingdom, Canada, Australia, and New Zealand issued a joint advisory warning that advanced frontier AI models are rapidly collapsing offensive cyber timelines. The group cautioned corporate boards and infrastructure operators that AI-driven exploitation capabilities will outpace standard enterprise defenses in a matter of months rather than years, vastly lowering technical barriers for automated network intrusions.
14 Million Email Accounts Exposed in Cyberattack on Japanese Telecom Giant KDDI
Source URL: nippon.com/en/news/yjj20260623
Japanese telecommunications provider KDDI Corp. disclosed a massive data breach targeting its email infrastructure utilized by several domestic internet service providers. The cyberattack, which exploited zero-day vulnerabilities in a third-party software component embedded in the email system, has potentially exposed up to 14.22 million user email addresses and encrypted passwords across major partner networks including JCOM, Biglobe, and Nifty.
Active Exploitation of Cisco Unified Communications Manager Flaw Triggers Root-Level Risk
Source URL: thehackernews.com/2026/06/23/a
Threat intelligence teams detected active, in-the-wild exploitation of a critical server-side request forgery (SSRF) flaw in Cisco's Unified Communications Manager and Session Management Edition. Tracked as CVE-2026-20230 (CVSS 8.6), the bug allows unauthenticated, remote attackers to send crafted HTTP requests to the WebDialer service, enabling them to write arbitrary files directly to the underlying operating system and escalate privileges to root.

  • 0
  • 0
  • 0
  • 5h ago

Bluesky

Profile picture fallback
A high-severity SSRF vulnerability, tracked as CVE-2026-20230, in Cisco Unified Communications Manager Server is now being exploited in attacks.
  • 1
  • 2
  • 0
  • 19h ago
Profile picture fallback
Falha crítica CVE-2026-20230 na Cisco já é explorada globalmente. Admins em Portugal devem actualizar urgentemente os sistemas afectados ⚠️ #falha
  • 0
  • 1
  • 0
  • 10h ago
Profile picture fallback
Cisco Unified CMの脆弱性CVE-2026-20230が攻撃に悪用される Cisco Unified CM flaw CVE-2026-20230 now exploited in attacks #BleepingComputer (Jun 23) www.bleepingcomputer.com/news/securit...
  • 0
  • 0
  • 0
  • 14h ago
Profile picture fallback
Cisco Unified CM and SME are under active attack exploiting CVE-2026-20230, an SSRF flaw that can lead to file writes and root access. Technical details and a PoC are now public. #Cisco #CVE-2026-20230 #UnifiedCM
  • 0
  • 0
  • 0
  • 12h ago
Profile picture fallback
Cisco Unified CMの脆弱性CVE-2026-20230、攻撃で悪用されるように | Codebook|Security News https://codebook.machinarecord.com/threatreport/silobreaker-cyber-alert/46326/
  • 0
  • 0
  • 0
  • 11h ago
Profile picture fallback
CVE-2026-20230 in Cisco Unified CM enables unauthenticated remote SSRF, arbitrary file writes, and root privilege escalation when WebDialer is enabled.
  • 0
  • 0
  • 0
  • 11h ago
Profile picture fallback
CVE-2026-20230 enables unauthenticated remote SSRF via crafted HTTP requests against Cisco Unified CM and Unified CM SME, potentially leading to file writes and root escalation.
  • 0
  • 0
  • 0
  • 8h ago
Profile picture fallback
Cisco Unified CM Under Active Attack: CVE-2026-20230 SSRF Exploit PoC Public — Patch Now or Get Rooted + Video Introduction: A critical server-side request forgery (SSRF) vulnerability in Cisco Unified Communications Manager (Unified CM) and Unified CM Session Management Edition (SME) is currently…
  • 0
  • 0
  • 0
  • 8h ago
Profile picture fallback
Cisco Unified CM CVE-2026-20230 is being actively exploited with a PoC, enabling SSRF, arbitrary file writes, and possible root escalation. Defused observed attacks and SSD published details. #Cisco #UnifiedCM #CVE202620230
  • 0
  • 0
  • 0
  • 7h ago
Profile picture fallback
Cisco Unified CM flaw actively exploited to drop webshells (CVE-2026-20230) 📖 Read more: www.helpnetsecurity.com/2026/06/24/c... #communication #enterprise #PoC #vulnerability #cybersecurity #cybersecuritynews @cisco.com
  • 0
  • 0
  • 0
  • 5h ago
Profile picture fallback
📈 CVE-2026-20230 is also a good reminder that context matters. Public exploit code + active attacks + rising EPSS probability often matter more operationally than CVSS scores alone. 🌐 basefortify.eu #CyberSecurity #EPSS #CVSS #InfoSec
  • 0
  • 0
  • 0
  • 4h ago
Profile picture fallback
🚨 Cisco is urging organizations to patch CVE-2026-20230 after reports of active exploitation against Unified Communications Manager. Public exploit code is online and the EPSS score jumped sharply after attack reports surfaced. 👇 basefortify.eu/posts/2026/0... #CyberSecurity #Cisco #CVE #InfoSec
  • 0
  • 0
  • 0
  • 4h ago
Profile picture fallback
Cisco Unified CM SME flaw CVE-2026-20230 now exploited in attacks #cybersecurity #hacking #news #infosec #security #technology #privacy
  • 0
  • 0
  • 0
  • 2h ago

Overview

  • libssh2
  • libssh2

17 Jun 2026
Published
24 Jun 2026
Updated

CVSS v4.0
CRITICAL (9.2)
EPSS
0.91%

KEV

Description

libssh2 through 1.11.1, fixed in commit 7acf3df contains an out-of-bounds write vulnerability in ssh2_transport_read() that fails to enforce upper bounds on packet_length field. Remote attackers can send crafted SSH packets with excessively large packet_length values to corrupt heap memory and achieve remote code execution.

Statistics

  • 4 Posts
  • 55 Interactions

Last activity: 14 hours ago

Fediverse

Profile picture fallback

Don't see these that often, malicious server, no auth, no interaction, RCE in ssh.

CVE-2026-55200 — libssh2 pre-auth heap OOB write, server supplied length runs past heap allocation

Because the trigger sits in the transport layer ahead of full server authentication, network-position attacks (DNS hijack, ARP/BGP, a malicious forward proxy) can deliver the packet even where the client pins host keys, assuming the early-KEX reachability holds.

github.com/bikini/exploitarium

linkedin.com/posts/dragosruiu_

  • 26
  • 20
  • 0
  • 19h ago

Bluesky

Profile picture fallback
Don't see these that often, malicious server, no auth, no interaction, RCE in ssh. CVE-2026-55200 — libssh2 pre-auth heap OOB write pre-auth so network attacks can deliver the packet even when client pins host keys github.com/bikini/explo... www.linkedin.com/posts/dragos...
  • 2
  • 5
  • 0
  • 20h ago
Profile picture fallback
🚨 libssh2 Critical RCE (CVSS 9.2) A critical vulnerability has been disclosed in libssh2, the SSH library used inside curl, backup tools, IoT firmware, and countless other software. 👉https://www.cyberkendra.com/2026/06/cve-2026-55200-critical-libssh2-flaw.html #libssh2 #security #vulnerability
  • 1
  • 0
  • 0
  • 16h ago
Profile picture fallback
libssh2の重大な脆弱性CVE-2026-55200により、リモートコード実行が可能になります Critical libssh2 Vulnerability CVE-2026-55200 Enables Remote Code Execution #DailyCyberSecurity (Jun 23) securityonline.info/libssh2-vuln...
  • 1
  • 0
  • 0
  • 14h ago

Overview

  • Pending

Pending
Published
Pending
Updated

CVSS
Pending
EPSS
Pending

KEV

Description

This candidate has been reserved by a CVE Numbering Authority (CNA). This record will be updated by the assigning CNA once details are available.

Statistics

  • 3 Posts
  • 5 Interactions

Last activity: 12 hours ago

Fediverse

Profile picture fallback
This is a fun one :)

[CVE-2026-50160] Hoppscotch: Unauthenticated JWT Secret Overwrite

https://seclists.org/oss-sec/2026/q2/1007

"The POST /v1/onboarding/config endpoint allows an unauthenticated attacker to inject arbitrary InfraConfig keys including JWT_SECRET and SESSION_SECRET"
  • 2
  • 2
  • 0
  • 12h ago

Bluesky

Profile picture fallback
CVE-2026-50160: Four Independent Weaknesses Combine Into a CVSS 10.0 Full Compromise in Hoppscotch
  • 0
  • 1
  • 0
  • 23h ago
Profile picture fallback
This is a fun one :) [CVE-2026-50160] Hoppscotch: Unauthenticated JWT Secret Overwrite seclists.org -> "The POST /v1/onboarding/config endpoint allows an unauthenticated attacker to inject arbitrary InfraConfig keys including JWT_SECRET and SESSION_SECRET" Original->
  • 0
  • 0
  • 0
  • 12h ago

Overview

  • Ubiquiti Inc
  • UniFi OS Server

22 May 2026
Published
24 Jun 2026
Updated

CVSS v3.1
CRITICAL (10.0)
EPSS
2.10%

Description

A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi OS devices to make unauthorized changes to the system.

Statistics

  • 3 Posts

Last activity: 2 hours ago

Fediverse

Profile picture fallback

CRITICAL UniFi OS vulnerabilities (CVE-2026-34908/09/10) allow remote, unauthenticated attackers to bypass auth and execute commands (pre-5.0.8). Exploited in the wild. Patch ASAP: radar.offseq.com/threat/critic

  • 0
  • 0
  • 0
  • 3h ago

Bluesky

Profile picture fallback
Threat actors exploited three critical Ubiquiti UniFi OS vulnerabilities (CVE-2026-34908/34909/34910) to bypass authentication, access/manipulate files, and execute command injection.
  • 0
  • 0
  • 0
  • 4h ago
Profile picture fallback
CISA added 3 actively exploited Ubiquiti UniFi OS flaws, including CVE-2026-34908, -34909, and -34910. BishopFox says chained bugs can bypass auth, inject commands, and enable rogue admin creation. #Ubiquiti #UniFiOS #CISA
  • 0
  • 0
  • 0
  • 2h ago

Overview

  • Samsung Mobile
  • Samsung Mobile Devices

09 Jan 2026
Published
26 Feb 2026
Updated

CVSS v4.0
HIGH (7.3)
EPSS
0.13%

KEV

Description

Use After Free in PROCA driver prior to SMR Jan-2026 Release 1 allows local attackers to potentially execute arbitrary code.

Statistics

  • 3 Posts
  • 3 Interactions

Last activity: 5 hours ago

Fediverse

Profile picture fallback

La vulnerabilità UAF del kernel KNOX di Samsung espone milioni di dispositivi Galaxy.

La vulnerabilità KNOX di Samsung (CVE-2026-20971) è una UAF del kernel in PROCA/FIVE che può consentire la corruzione [della memoria] tramite una race condition; Samsung l'ha corretta nel gennaio 2026.

securityaffairs.com/194090/sec

@informatica

infosec.exchange/@securityaffa

  • 3
  • 0
  • 0
  • 17h ago
Profile picture fallback

Eight-Year-Old Samsung KNOX Flaw Exposed Millions of Galaxy Devices to Kernel Attacks
Source URL: securityweek.com/eight-year-ol
Researchers disclosed a high-severity use-after-free (UAF) race condition flaw (CVE-2026-20971, CVSS 7.8) affecting Samsung Galaxy S9 through S25 devices. The bug resides in the interaction between the kernel's process authenticator (PROCA) and its integrity subsystem (FIVE), leaving a tiny preemption window open during child process spawning that attackers can exploit to compromise the kernel.
Mythos Discovers 'Squidbleed,' a Memory Leak That's Gone Undetected Since Clinton Era
Source URL: theregister.com/security/2026/
A 29-year-old vulnerability dubbed "Squidbleed" (CVE-2026-47729) was discovered in the popular open-source caching proxy server Squid using Anthropic's Claude Mythos Preview AI. The flaw silently leaks users' plaintext HTTP requests, credentials, and session tokens, posing significant data exposure risks across enterprise networks and older legacy environments. It was resolved in version 7.6.
FortiBleed-kyberhyökkäyskampanjan vaikutukset näkyvät myös Suomessa
Source URL: kyberturvallisuuskeskus.fi/fi/
The global FortiBleed cyberattack campaign heavily impacts Fortinet FortiGate firewalls and SSL-VPN appliances using previously leaked or stolen credentials. The Finnish National Cyber Security Centre (Kyberturvallisuuskeskus) has begun mapping targeted organizations across Finland and releasing remediation guidelines to counter ongoing unauthorized access attempts.
CVE-2024-40766: The Patch Fixed the Bug. Nobody Fixed the Configuration.
Source URL: isc.sans.edu/diary/rss/33094
Despite a 2024 patch for an improper access control flaw (CVE-2024-40766, CVSS 9.3) impacting SonicWall Gen 5, 6, and 7 firewalls, ransomware operators continue to successfully compromise networks due to unmanaged configurations. The vulnerability targets the management interface and SSLVPN services, allowing threat actors to drop entire networks or gain complete device control.
New macOS ClickFix Attack Silently Mounts DMGs to Push Infostealer
Source URL: bleepingcomputer.com/news/secu
A novel macOS ClickFix social engineering campaign tricks users into running malicious Terminal commands via fake CAPTCHA verification prompts. Upon execution, the script uses the native hdiutil utility to silently download, mount, and execute a disk image (DMG) bundle containing the Atomic macOS Stealer (AMOS), harvesting browser credentials, system Keychains, and crypto wallet data.
'Cordyceps': Mushrooming Malicious Pull Requests Threaten Developer Workflows
Source URL: darkreading.com/application-se
Dubbed "Cordyceps," a newly identified architectural weakness within automated CI/CD pipelines allows malicious pull requests to compromise software supply chains. By exploiting overly permissive access controls in automated pre-merge testing workflows, attackers can execute command injection to hijack highly privileged signing keys and access tokens.
The Global Namespace Risk: Universal Bucket Hijacking Technique for Cloud Data Exfiltration
Source URL: unit42.paloaltonetworks.com/cl
Palo Alto Networks Unit 42 uncovered a structural flaw across AWS, Google Cloud, and Microsoft Azure involving global namespace collision. Attackers can silently hijack an organization's active cloud data streams by anticipating, deleting, and immediately recreating targeted storage buckets under their own control, leaving minimal detection signatures during data exfiltration.
LastPass Confirms Data Breach in Klue Supply Chain Attack
Source URL: bleepingcomputer.com/news/secu
LastPass suffered a security breach impacting its corporate Salesforce environment after threat actors stole OAuth tokens from Klue, a third-party market intelligence platform. While customer password vaults and internal core infrastructure remain fully isolated and untouched, the attackers successfully extracted internal corporate CRM data, customer names, and support log information.
Tata Electronics Confirms Cyberattack After Alleged Apple, Tesla Documents Appear Online
Source URL: therecord.media/tata-electroni
Indian manufacturing giant Tata Electronics confirmed a recent network breach following claims by extortion group "World Leaks," who published stolen documents allegedly detailing proprietary client data from Apple and Tesla. Tata maintains that the incident was isolated, successfully contained, and has caused zero operational downtime.
Payouts King Ransomware Initial Access Broker Deploys New Edgecution Malware
Source URL: zscaler.com/blogs/security-res
Zscaler ThreatLabz isolated a stealthy delivery mechanism dubbed "Edgecution," deployed by initial access brokers linked to the Payouts King ransomware family. The attack abuses a malicious Microsoft Edge browser extension that manipulates the Chrome native messaging protocol to bypass browser sandboxing entirely, triggering arbitrary local file system modification and execution.
AI Models Capable of Launching Major Cyberattacks Months Away, Five Eyes Alliance Warns
Source URL: cybersecuritydive.com/news/ai-
An international intelligence coalition comprising the United States, United Kingdom, Canada, Australia, and New Zealand issued a joint advisory warning that advanced frontier AI models are rapidly collapsing offensive cyber timelines. The group cautioned corporate boards and infrastructure operators that AI-driven exploitation capabilities will outpace standard enterprise defenses in a matter of months rather than years, vastly lowering technical barriers for automated network intrusions.
14 Million Email Accounts Exposed in Cyberattack on Japanese Telecom Giant KDDI
Source URL: nippon.com/en/news/yjj20260623
Japanese telecommunications provider KDDI Corp. disclosed a massive data breach targeting its email infrastructure utilized by several domestic internet service providers. The cyberattack, which exploited zero-day vulnerabilities in a third-party software component embedded in the email system, has potentially exposed up to 14.22 million user email addresses and encrypted passwords across major partner networks including JCOM, Biglobe, and Nifty.
Active Exploitation of Cisco Unified Communications Manager Flaw Triggers Root-Level Risk
Source URL: thehackernews.com/2026/06/23/a
Threat intelligence teams detected active, in-the-wild exploitation of a critical server-side request forgery (SSRF) flaw in Cisco's Unified Communications Manager and Session Management Edition. Tracked as CVE-2026-20230 (CVSS 8.6), the bug allows unauthenticated, remote attackers to send crafted HTTP requests to the WebDialer service, enabling them to write arbitrary files directly to the underlying operating system and escalate privileges to root.

  • 0
  • 0
  • 0
  • 5h ago

Bluesky

Profile picture fallback
CVE-2026-20971: Samsung Android kernel UAF affecting Galaxy S9-S25
  • 0
  • 0
  • 0
  • 5h ago

Overview

  • FFmpeg
  • FFmpeg

18 Jun 2026
Published
19 Jun 2026
Updated

CVSS v3.1
HIGH (8.8)
EPSS
0.39%

KEV

Description

An out-of-bounds write vulnerability in FFmpeg's libavcodec library, specifically in the MagicYUV decoder, allows denial-of-service and, in some cases, can be exploited for remote code execution. This vulnerability is associated with the file libavcodec/magicyuv.C. This issue affects FFmpeg before version 8.1.2.

Statistics

  • 2 Posts
  • 3 Interactions

Last activity: 11 hours ago

Bluesky

Profile picture fallback
Un fichier vidéo de 50 Ko déposé par Sonarr/Radarr, scanné par Jellyfin, et c'est un RCE sans aucune action user. PixelSmash (CVE-2026-8461) frappe FFmpeg, donc tout l'écosystème : Kodi, Emby, OBS, Nextcloud… Correctif : FFmpeg 8.1.2. 👇 www.it-connect.fr/pixelsmash-u... #cybersecurite
  • 1
  • 2
  • 0
  • 11h ago
Profile picture fallback
FFmpeg の MagicYUVデコーダーに深刻な脆弱性 PixelSmash-CVE-2026-8461 rocket-boys.co.jp/security-mea... #セキュリティ対策Lab #security #securitynews
  • 0
  • 0
  • 0
  • 15h ago

Overview

  • Pending

Pending
Published
Pending
Updated

CVSS
Pending
EPSS
Pending

KEV

Description

This candidate has been reserved by a CVE Numbering Authority (CNA). This record will be updated by the assigning CNA once details are available.

Statistics

  • 3 Posts
  • 1 Interaction

Last activity: 3 hours ago

Fediverse

Profile picture fallback

A decades-old memory leak vulnerability in Squid Proxy, dubbed Squidbleed (CVE-2026-47729), allows attackers to capture sensitive cleartext HTTP data from shared network environments. Security researchers identified this flaw using AI, and users can secure their systems by applying the official patch or disabling FTP support.
securityweek.com/decades-old-s

  • 1
  • 0
  • 0
  • 20h ago
Profile picture fallback

Eight-Year-Old Samsung KNOX Flaw Exposed Millions of Galaxy Devices to Kernel Attacks
Source URL: securityweek.com/eight-year-ol
Researchers disclosed a high-severity use-after-free (UAF) race condition flaw (CVE-2026-20971, CVSS 7.8) affecting Samsung Galaxy S9 through S25 devices. The bug resides in the interaction between the kernel's process authenticator (PROCA) and its integrity subsystem (FIVE), leaving a tiny preemption window open during child process spawning that attackers can exploit to compromise the kernel.
Mythos Discovers 'Squidbleed,' a Memory Leak That's Gone Undetected Since Clinton Era
Source URL: theregister.com/security/2026/
A 29-year-old vulnerability dubbed "Squidbleed" (CVE-2026-47729) was discovered in the popular open-source caching proxy server Squid using Anthropic's Claude Mythos Preview AI. The flaw silently leaks users' plaintext HTTP requests, credentials, and session tokens, posing significant data exposure risks across enterprise networks and older legacy environments. It was resolved in version 7.6.
FortiBleed-kyberhyökkäyskampanjan vaikutukset näkyvät myös Suomessa
Source URL: kyberturvallisuuskeskus.fi/fi/
The global FortiBleed cyberattack campaign heavily impacts Fortinet FortiGate firewalls and SSL-VPN appliances using previously leaked or stolen credentials. The Finnish National Cyber Security Centre (Kyberturvallisuuskeskus) has begun mapping targeted organizations across Finland and releasing remediation guidelines to counter ongoing unauthorized access attempts.
CVE-2024-40766: The Patch Fixed the Bug. Nobody Fixed the Configuration.
Source URL: isc.sans.edu/diary/rss/33094
Despite a 2024 patch for an improper access control flaw (CVE-2024-40766, CVSS 9.3) impacting SonicWall Gen 5, 6, and 7 firewalls, ransomware operators continue to successfully compromise networks due to unmanaged configurations. The vulnerability targets the management interface and SSLVPN services, allowing threat actors to drop entire networks or gain complete device control.
New macOS ClickFix Attack Silently Mounts DMGs to Push Infostealer
Source URL: bleepingcomputer.com/news/secu
A novel macOS ClickFix social engineering campaign tricks users into running malicious Terminal commands via fake CAPTCHA verification prompts. Upon execution, the script uses the native hdiutil utility to silently download, mount, and execute a disk image (DMG) bundle containing the Atomic macOS Stealer (AMOS), harvesting browser credentials, system Keychains, and crypto wallet data.
'Cordyceps': Mushrooming Malicious Pull Requests Threaten Developer Workflows
Source URL: darkreading.com/application-se
Dubbed "Cordyceps," a newly identified architectural weakness within automated CI/CD pipelines allows malicious pull requests to compromise software supply chains. By exploiting overly permissive access controls in automated pre-merge testing workflows, attackers can execute command injection to hijack highly privileged signing keys and access tokens.
The Global Namespace Risk: Universal Bucket Hijacking Technique for Cloud Data Exfiltration
Source URL: unit42.paloaltonetworks.com/cl
Palo Alto Networks Unit 42 uncovered a structural flaw across AWS, Google Cloud, and Microsoft Azure involving global namespace collision. Attackers can silently hijack an organization's active cloud data streams by anticipating, deleting, and immediately recreating targeted storage buckets under their own control, leaving minimal detection signatures during data exfiltration.
LastPass Confirms Data Breach in Klue Supply Chain Attack
Source URL: bleepingcomputer.com/news/secu
LastPass suffered a security breach impacting its corporate Salesforce environment after threat actors stole OAuth tokens from Klue, a third-party market intelligence platform. While customer password vaults and internal core infrastructure remain fully isolated and untouched, the attackers successfully extracted internal corporate CRM data, customer names, and support log information.
Tata Electronics Confirms Cyberattack After Alleged Apple, Tesla Documents Appear Online
Source URL: therecord.media/tata-electroni
Indian manufacturing giant Tata Electronics confirmed a recent network breach following claims by extortion group "World Leaks," who published stolen documents allegedly detailing proprietary client data from Apple and Tesla. Tata maintains that the incident was isolated, successfully contained, and has caused zero operational downtime.
Payouts King Ransomware Initial Access Broker Deploys New Edgecution Malware
Source URL: zscaler.com/blogs/security-res
Zscaler ThreatLabz isolated a stealthy delivery mechanism dubbed "Edgecution," deployed by initial access brokers linked to the Payouts King ransomware family. The attack abuses a malicious Microsoft Edge browser extension that manipulates the Chrome native messaging protocol to bypass browser sandboxing entirely, triggering arbitrary local file system modification and execution.
AI Models Capable of Launching Major Cyberattacks Months Away, Five Eyes Alliance Warns
Source URL: cybersecuritydive.com/news/ai-
An international intelligence coalition comprising the United States, United Kingdom, Canada, Australia, and New Zealand issued a joint advisory warning that advanced frontier AI models are rapidly collapsing offensive cyber timelines. The group cautioned corporate boards and infrastructure operators that AI-driven exploitation capabilities will outpace standard enterprise defenses in a matter of months rather than years, vastly lowering technical barriers for automated network intrusions.
14 Million Email Accounts Exposed in Cyberattack on Japanese Telecom Giant KDDI
Source URL: nippon.com/en/news/yjj20260623
Japanese telecommunications provider KDDI Corp. disclosed a massive data breach targeting its email infrastructure utilized by several domestic internet service providers. The cyberattack, which exploited zero-day vulnerabilities in a third-party software component embedded in the email system, has potentially exposed up to 14.22 million user email addresses and encrypted passwords across major partner networks including JCOM, Biglobe, and Nifty.
Active Exploitation of Cisco Unified Communications Manager Flaw Triggers Root-Level Risk
Source URL: thehackernews.com/2026/06/23/a
Threat intelligence teams detected active, in-the-wild exploitation of a critical server-side request forgery (SSRF) flaw in Cisco's Unified Communications Manager and Session Management Edition. Tracked as CVE-2026-20230 (CVSS 8.6), the bug allows unauthenticated, remote attackers to send crafted HTTP requests to the WebDialer service, enabling them to write arbitrary files directly to the underlying operating system and escalate privileges to root.

  • 0
  • 0
  • 0
  • 5h ago

Bluesky

Profile picture fallback
⚠️ Squidbleed (CVE-2026-47729, CVSS 6.5): a flaw in Squid's FTP parser that can leak another user's cleartext HTTP request, including credentials, to someone already using the same proxy. Upgrade and verify the patch, or disable FTP. Query: technology="Squid Proxy"
  • 0
  • 0
  • 0
  • 3h ago

Overview

  • caddyserver
  • caddy

23 Jun 2026
Published
23 Jun 2026
Updated

CVSS v3.1
HIGH (7.5)
EPSS
0.40%

KEV

Description

Caddy is an extensible server platform that uses TLS by default. Prior to 2.11.4, on Windows, Caddy path matchers treat /private\secret.txt as outside /private/*, but file_server later resolves the same request path as private\secret.txt on disk. An unauthenticated remote client can bypass Caddy path-scoped auth/deny routes protecting /private/*. This vulnerability is fixed in 2.11.4.

Statistics

  • 2 Posts
  • 3 Interactions

Last activity: 17 hours ago

Fediverse

Profile picture fallback

CVE-2026-52844 - Path Traversal in Caddy on Windows. CVSS 7.5. Unauthenticated remote attackers can bypass auth/deny routes protecting /private/*. Fixed in 2.11.4. Update immediately. #CVE #Caddy #infosec

valtersit.com/cve/CVE-2026-528

  • 0
  • 1
  • 0
  • 17h ago

Bluesky

Profile picture fallback
CVE-2026-52844 is a critical path traversal vulnerability affecting Caddy
  • 0
  • 2
  • 0
  • 17h ago

Overview

  • home-assistant
  • core

23 Jun 2026
Published
23 Jun 2026
Updated

CVSS v3.1
HIGH (7.6)
EPSS
0.19%

KEV

Description

Home Assistant is open source home automation software that puts local control and privacy first. Prior to 2026.6.0, the Konnected integration registers an HTTP endpoint, KonnectedView (homeassistant/components/konnected/__init__.py), that is marked as not requiring authentication (requires_auth = False). A comment next to that line says auth is instead handled "via the access token from configuration." That promise is only half true. Write requests (POST and PUT) are handled by update_sensor(), which does check the request's Authorization: Bearer <token> header against the integration's stored access tokens (using hmac.compare_digest). Read requests (GET) are handled by a separate get() method that has no authentication check at all. This vulnerability is fixed in 2026.6.0.

Statistics

  • 1 Post
  • 9 Interactions

Last activity: 4 hours ago

Fediverse

Profile picture fallback

CVE-2026-54317 - Authentication Bypass in Home Assistant. Konnected integration exposes an unauthenticated HTTP endpoint allowing unauthorized write requests. CVSS 7.6. Update to 2026.6.0 immediately. #CVE #HomeAssistant #infosec

valtersit.com/cve/CVE-2026-543

  • 8
  • 1
  • 0
  • 4h ago

Overview

  • Pending

Pending
Published
Pending
Updated

CVSS
Pending
EPSS
Pending

KEV

Description

This candidate has been reserved by a CVE Numbering Authority (CNA). This record will be updated by the assigning CNA once details are available.

Statistics

  • 1 Post
  • 16 Interactions

Last activity: 9 hours ago

Fediverse

Profile picture fallback

CVE-2026-8932 is the oldest #curl vulnerability reported so far. 25.25 years old. Shipped in releases since curl version 7.7, released on March 22 2001

Still rather benign and it probably hurt about three users, at most.

curl.se/docs/CVE-2026-8932.html

  • 3
  • 13
  • 0
  • 9h ago
Showing 1 to 10 of 64 CVEs