24h | 7d | 30d

Overview

  • Palo Alto Networks
  • Cloud NGFW

13 May 2026
Published
14 Jul 2026
Updated

CVSS v4.0
HIGH (7.8)
EPSS
86.68%

Description

Authentication bypass vulnerabilities in the GlobalProtect portal and gateway of Palo Alto Networks PAN-OS® software allows the attacker to bypass security restrictions and establish an unauthorized VPN connection. Panorama and Cloud NGFW are not impacted by these issues.

Statistics

  • 10 Posts
  • 4 Interactions

Last activity: 2 hours ago

Fediverse

Profile picture fallback

‼️ New Dark Web Informer Blog Post!

Title: Trusting a Cookie It Never Issued: The PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257)

Link: darkwebinformer.com/trusting-a

💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: darkwebinformer.com/pricing

  • 0
  • 1
  • 0
  • 2h ago
Profile picture fallback

Qilin Ransomware Deployed via Palo Alto GlobalProtect Flaw CVE-2026-0257

securityonline.info/qilin-rans

  • 0
  • 0
  • 0
  • 16h ago
Profile picture fallback

Hackers Exploiting Palo Alto’s PAN-OS Vulnerability to Deploy Qilin Ransomware cybersecuritynews.com/cve-2026

  • 0
  • 0
  • 0
  • 16h ago
Profile picture fallback

Palo Alto Networks GlobalProtect VPN (PAN-OS) CRITICAL vuln (CVE-2026-0257) is under active Qilin ransomware exploitation. Auth bypass allows full domain compromise. Patch ASAP (released May 13, 2026). radar.offseq.com/threat/critic

  • 0
  • 0
  • 0
  • 9h ago
Profile picture fallback

Hackers Exploit Palo Alto PAN-OS Flaw to Deploy Qilin Ransomware in Active Intrusions

Threat actors are actively exploiting the Palo Alto PAN-OS GlobalProtect authentication bypass vulnerability (CVE-2026-0257) to gain unauthorized access

thecybersecguru.com/news/palo-

  • 0
  • 0
  • 0
  • 6h ago

Bluesky

Profile picture fallback
The latest update for #ArcticWolf includes "Cookie Crumbles: How Exploitation of CVE-2026-0257 Leads to Qilin Ransomware". #cybersecurity #infosec #networks https://opsmtrs.com/2ZFbaTl
  • 1
  • 1
  • 0
  • 17h ago
Profile picture fallback
Cookie Crumbles: How Exploitation of CVE-2026-0257 Leads to Qilin Ransomware - Arctic Wolf Arctic Wolf Labs observed a series of intrusions during June 2026 that culminated in Qilin ransom Read more: https://arcticwolf.com/resources/blog/exploitation-of-cve-2026-0257-leads-to-qilin-ransomware/
  • 0
  • 1
  • 0
  • 8h ago
Profile picture fallback
~Arcticwolf~ Threat actors exploit CVE-2026-0257 in Palo Alto GlobalProtect VPN to gain initial access and deploy Qilin ransomware across victim networks. - IOCs: 108. 61. 229. 217, 108. 61. 75. 232, 199. 247. 22. 193 - ...
  • 0
  • 0
  • 0
  • 16h ago
Profile picture fallback
Qilin affiliates are exploiting Palo Alto PAN-OS GlobalProtect flaw CVE-2026-0257, using unauthorized VPN access for domain-wide ransomware encryption. Arctic Wolf says intrusions are ongoing. #Qilin #GlobalProtect #PANOS
  • 0
  • 0
  • 0
  • 7h ago
Profile picture fallback
Arctic Wolf found CVE-2026-0257 abused in June intrusions against Palo Alto firewalls to gain VPN access, then deploy Qilin ransomware with PsExec movement, credential theft, log clearing, and exfiltration. #CVE20260257 #PaloAlto #Qilin
  • 0
  • 0
  • 0
  • 5h ago

Overview

  • ServiceNow
  • ServiceNow AI Platform

13 Jul 2026
Published
14 Jul 2026
Updated

CVSS v4.0
CRITICAL (9.5)
EPSS
0.51%

KEV

Description

ServiceNow has addressed a remote code execution vulnerability that was identified in the ServiceNow AI platform. This vulnerability could enable an unauthenticated user, in certain circumstances, to execute code within the ServiceNow platform. ServiceNow addressed this vulnerability by deploying a security update to hosted instances. Relevant security updates have also been provided to ServiceNow self-hosted customers and partners. Further, the vulnerability is addressed in the listed patches and family releases, which have been made available to hosted and self-hosted customers, as well as partners. We are not currently aware of exploitation against ServiceNow instances. We recommend customers promptly apply appropriate updates or upgrade to a patched release if they have not already done so.

Statistics

  • 6 Posts
  • 1 Interaction

Last activity: 6 hours ago

Fediverse

Profile picture fallback

Geopolitical tensions are escalating in the Middle East following Iranian airstrikes on US military bases. In cybersecurity, a critical ServiceNow AI Platform flaw (CVE-2026-6875) is actively being exploited for unauthenticated code execution. Meanwhile, the EU has ordered Google to open Android to rival AI assistants and share search data. A Radware survey reveals 83% of organizations are adopting generative AI faster than they can secure it.

#Cybersecurity #Geopolitics #AINews

  • 0
  • 1
  • 0
  • 9h ago

Bluesky

Profile picture fallback
ServiceNow AI Platformに未認証RCEを許すサンドボックスエスケープ 脆弱性(CVE-2026-6875) rocket-boys.co.jp/security-mea... #セキュリティ対策Lab #security #securitynews #脆弱性
  • 0
  • 0
  • 0
  • 15h ago
Profile picture fallback
Threat actors are exploiting CVE-2026-6875 in ServiceNow AI Platform to escape a sandbox and execute arbitrary code pre-authentication.
  • 0
  • 0
  • 0
  • 12h ago
Profile picture fallback
Threat actors are actively exploiting CVE-2026-6875, a critical sandbox escape vulnerability in the ServiceNow AI Platform. The flaw, rated 9.5 […]
  • 0
  • 0
  • 0
  • 11h ago
Profile picture fallback
CVE-2026-6875 in ServiceNow AI enables unauthenticated sandbox escape leading to arbitrary code execution and has been exploited in the wild.
  • 0
  • 0
  • 0
  • 11h ago
Profile picture fallback
Today's #CTI brief for 2026-07-21: The exposed platform with no clear owner is the real problem. ServiceNow CVE-2026-6875 is reportedly under pre-auth RCE exploitation. Validate exposure and preserve logs before remediation changes the evidence. #ThreatIntel #VulnMgmt #IoT
  • 0
  • 0
  • 0
  • 6h ago

Overview

  • Pending

Pending
Published
Pending
Updated

CVSS
Pending
EPSS
Pending

KEV

Description

This candidate has been reserved by a CVE Numbering Authority (CNA). This record will be updated by the assigning CNA once details are available.

Statistics

  • 5 Posts

Last activity: 2 hours ago

Fediverse

Profile picture fallback
ZDI-26-444 - 7-Zip XZ Decompression Heap-based Buffer Overflow Remote Code Execution Vulnerability

https://www.zerodayinitiative.com/advisories/ZDI-26-444/

CVE-2026-14266
  • 0
  • 0
  • 0
  • 5h ago

Bluesky

Profile picture fallback
7-Zip、悪意ある圧縮ファイルでコード実行が可能な脆弱性を修正(CVE-2026-14266) rocket-boys.co.jp/security-mea... #セキュリティ対策Lab #security #securitynews #脆弱性
  • 0
  • 0
  • 0
  • 21h ago
Profile picture fallback
Opening a crafted XZ archive in 7-Zip could let an attacker run code on the machine. The flaw, CVE-2026-14266, is a heap-based buffer overflow in how the archiver processes XZ chunked data, and Trend Micro's Zero Day Initiative (ZDI) detailed it on July 15.
  • 0
  • 0
  • 0
  • 12h ago
Profile picture fallback
ZDI-26-444 - 7-Zip XZ Decompression Heap-based Buffer Overflow Remote Code Execution Vulnerability www.zerodayinitiative.com -> CVE-2026-14266 Original->
  • 0
  • 0
  • 0
  • 5h ago
Profile picture fallback
7-Zip, un file XZ può eseguire codice: aggiornate subito alla 26.02 CVE-2026-14266 è un heap buffer overflow nel decoder XZ di 7-Zip. Richiede un archivio malevolo e l'interazione dell'... https://www.ilsoftware.it/7-zip-archivio-xz-esecuzione-codice/
  • 0
  • 0
  • 0
  • 2h ago

Overview

  • WordPress
  • WordPress

17 Jul 2026
Published
21 Jul 2026
Updated

CVSS v3.1
CRITICAL (9.8)
EPSS
8.95%

Description

WordPress 6.9.x before 6.9.5 and 7.0.x before 7.0.2 is affected by a REST API batch endpoint route confusion issue which, combined with the author__not_in WP_Query SQL Injection (CVE-2026-60137), could allow an attacker to perform SQL Injection and achieve Remote Code Execution.

Statistics

  • 10 Posts
  • 2 Interactions

Last activity: Last hour

Fediverse

Profile picture fallback

🚨 Critical #wp2shell flaw exposes WordPress core to zero-plugin server takeover! Deep dive into how CVE-2026-63030 and CVE-2026-60137 chain together to achieve unauthenticated Pre-Auth RCE. Full technical analysis:

denizhalil.com/2026/07/20/word

#WordPress #CyberSecurity

  • 0
  • 0
  • 0
  • 23h ago
Profile picture fallback

wp2shell, a WordPress Core RCE chain (CVE-2026-63030, CVE-2026-60137), is exploited in the wild. Public PoC code is out. Patch WordPress now.

securityonline.info/wp2shell-w

  • 0
  • 0
  • 0
  • 18h ago
Profile picture fallback

The latest Word Press Security Issues CVE-2026-60137 and CVE-2026-63030 are really troublesome. Bad actors are really quick in finding suitable targets.
Please note that vulnerability of 7.0 through 7.0.1 had been missing in BSI's publication at first... #infosec

  • 0
  • 0
  • 0
  • 7h ago
Profile picture fallback

#IoC von #wp2shell suchen:

- Webserverlogs

`zgrep /batch/v1 *.log *.log.gz | egrep '45.79.167[.]238|34.81.132[.]62|79.177.131[.]206|15.157.135[.]170|94.100.52[.]128|172.235.128[.]52'`

- Wordpress-Verzeichnis

`find . -type f -print0 | xargs -0 md5sum | egrep '2a1410d8e2a8337ac2171cedea8c0fdc47c647a0|58eca847e9eae9e6b08cc211f1559817b71bc4cc|ebea44890f434d5d67ede22009a3f4bb5cac33f8|d9a220c8039f1c4d72cae7ccb8b3a33dec8815be|e9756e2338f84746007235e4cab7a70d5b3ca47f'`

wiz.io/blog/wp2shell-cve-2026-

  • 0
  • 0
  • 0
  • 4h ago
Profile picture fallback

CISA added four flaws to its KEV catalog, including WordPress RCE (CVE-2026-63030) and Langflow RCE (CVE-2026-0770). All are exploited in the wild.

securityonline.info/cisa-kev-f

  • 0
  • 0
  • 0
  • 3h ago

Bluesky

Profile picture fallback
WordPress Core: Critical wp2shell RCE CVE-2026-63030 https://www.rapid7.com/blog/post/etr-cve-2026-63030-wp2shell-a-critical-remote-code-execution-vulnerability-in-wordpress-core https://flagthis.com/tldr/5250 ##WordPress ##RCE ##ZeroDay ##AIExploitation
  • 0
  • 0
  • 0
  • Last hour
Profile picture fallback
Hackers are exploiting the "wp2shell" critical vulnerability suite (CVE-2026-63030 and CVE-2026-60137) affecting WordPress Core to deploy persistent webshells and install malicious plugins on affected servers.
  • 1
  • 1
  • 0
  • 3h ago
Profile picture fallback
~Akamai~ Unauthenticated SQLi via WordPress REST Batch API escalates to full RCE on default installations. - IOCs: CVE-2026-63030, CVE-2026-60137 - #CVE202663030 #RCE #ThreatIntel #WordPress
  • 0
  • 0
  • 0
  • 16h ago
Profile picture fallback
📢 wp2shell : analyse technique approfondie des CVE-2026-63030 et CVE-2026-60137 dans WordPress 📝 ## 🔍 Contexte Publié le 18 juillet 2026 … https://cyberveille.ch/posts/2026-07-21-wp2shell-analyse-technique-approfondie-des-cve-2026-63030-et-cve-2026-60137-dans-wordpress/ #CVE_2026_60137 #Cyberveille
  • 0
  • 0
  • 0
  • Last hour
Profile picture fallback
~Cybergcca~ Canadian Cyber Centre flags 5 advisories; Microsoft and WordPress CVEs actively exploited in the wild. - IOCs: CVE-2026-56164, CVE-2026-60137, CVE-2026-63030 - #PatchNow #ThreatIntel #Vulnerability
  • 0
  • 0
  • 0
  • 4h ago

Overview

  • snapd

21 Jul 2026
Published
21 Jul 2026
Updated

CVSS v3.1
HIGH (7.8)
EPSS
Pending

KEV

Description

A local privilege escalation vulnerability exists in snap-confine, a set-capabilities core component used internally by Canonical snapd to construct the secure execution environment for snap applications. This vulnerability uniquely affects versions of snap-confine configured with set-capabilities (rather than standard set-uid-root installations). Due to a flaw in how privilege boundaries or security sandboxes are initialized when the binary runs under limited ambient capabilities, a local, unprivileged attacker can exploit this behavior to bypass intended restrictions and execute arbitrary code. Successful exploitation allows the local user to elevate their privileges to full root authority.

Statistics

  • 4 Posts
  • 3 Interactions

Last activity: 3 hours ago

Fediverse

Profile picture fallback

CVE-2026-8933 is a snap-confine privilege escalation flaw. It gives any user root on default Ubuntu Desktop 26.04, 25.10, and 24.04. Update snapd now.

securityonline.info/snap-confi

  • 1
  • 1
  • 0
  • 3h ago
Profile picture fallback
Qualys Security Advisory - Local Privilege Escalation in set-capabilities versions of snap-confine (CVE-2026-8933)

https://www.openwall.com/lists/oss-security/2026/07/21/2
  • 0
  • 0
  • 0
  • 4h ago
Profile picture fallback

Local Privilege Escalation in set-capabilities versions of snap-confine (CVE-2026-8933)

seclists.org/oss-sec/2026/q3/1

  • 0
  • 0
  • 0
  • 4h ago

Bluesky

Profile picture fallback
Qualys Security Advisory - Local Privilege Escalation in set-capabilities versions of snap-confine (CVE-2026-8933) www.openwall.com -> Original->
  • 1
  • 0
  • 0
  • 4h ago

Overview

  • F5
  • NGINX Plus

15 Jul 2026
Published
16 Jul 2026
Updated

CVSS v3.1
HIGH (8.1)
EPSS
0.83%

KEV

Description

A vulnerability exists in NGINX Plus and NGINX Open Source when a map directive uses regex matching and a string expression references the map's regex capture variables before referencing the map output variable. Alternatively, the same result could be achieved by using a non-cacheable variable in a string expression under certain conditions. An unauthenticated attacker along with conditions beyond their control can exploit this vulnerability by sending crafted HTTP requests. This may cause a heap buffer overflow in the NGINX worker process leading to a restart. Additionally, attackers can execute code on systems with Address Space Layout Randomization (ASLR) disabled or when the attacker can bypass ASLR. Impact: This vulnerability may allow remote attackers to cause a denial-of-service (DoS) on the NGINX system or to possibly trigger a code execution. There is no control plane exposure; this is a data plane issue only.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

Statistics

  • 4 Posts

Last activity: 6 hours ago

Fediverse

Profile picture fallback

F5 patches a critical NGINX CVE-2026-42533 vulnerability causing remote code execution. Learn how to update your server and secure your configuration.

meterpreter.org/nginx-cve-2026

  • 0
  • 0
  • 0
  • 6h ago

Bluesky

Profile picture fallback
📢 CVE-2026-42533 : RCE critique pré-authentification dans nginx via heap overflow et fuite ASLR 📝 ## 🔍 Contexte Publié le 20 juillet 2026 p… https://cyberveille.ch/posts/2026-07-20-cve-2026-42533-rce-critique-pre-authentification-dans-nginx-via-heap-overflow-et-fuite-aslr/ #ASLR_bypass #Cyberveille
  • 0
  • 0
  • 0
  • 23h ago
Profile picture fallback
2026年7月報告のnginx脆弱性(CVE-2026-42533)をDockerで再現してみた | DevelopersIO https://dev.classmethod.jp/articles/cve-2026-42533-nginx-rce-docker-repro/
  • 0
  • 0
  • 0
  • 15h ago
Profile picture fallback
NGINX, falla critica rimasta nascosta 15 anni: rischio crash e codice remoto La vulnerabilità CVE-2026-42533 sfrutta regex e valutazione a due passaggi per corrompere la mem... https://www.ilsoftware.it/nginx-vulnerabilita-crash-server-attacco-remoto/
  • 0
  • 0
  • 0
  • 10h ago

Overview

  • WordPress
  • WordPress

17 Jul 2026
Published
21 Jul 2026
Updated

CVSS v3.1
MEDIUM (5.9)
EPSS
4.03%

Description

WordPress 6.8.x before 6.8.6, 6.9.x before 6.9.5, and 7.0.x before 7.0.2 does not properly sanitise the author__not_in parameter of WP_Query, which could allow SQL Injection when a plugin or theme passes untrusted input to the parameter.

Statistics

  • 8 Posts
  • 2 Interactions

Last activity: Last hour

Fediverse

Profile picture fallback

🚨 Critical #wp2shell flaw exposes WordPress core to zero-plugin server takeover! Deep dive into how CVE-2026-63030 and CVE-2026-60137 chain together to achieve unauthenticated Pre-Auth RCE. Full technical analysis:

denizhalil.com/2026/07/20/word

#WordPress #CyberSecurity

  • 0
  • 0
  • 0
  • 23h ago
Profile picture fallback

wp2shell, a WordPress Core RCE chain (CVE-2026-63030, CVE-2026-60137), is exploited in the wild. Public PoC code is out. Patch WordPress now.

securityonline.info/wp2shell-w

  • 0
  • 0
  • 0
  • 18h ago
Profile picture fallback

The latest Word Press Security Issues CVE-2026-60137 and CVE-2026-63030 are really troublesome. Bad actors are really quick in finding suitable targets.
Please note that vulnerability of 7.0 through 7.0.1 had been missing in BSI's publication at first... #infosec

  • 0
  • 0
  • 0
  • 7h ago
Profile picture fallback

#IoC von #wp2shell suchen:

- Webserverlogs

`zgrep /batch/v1 *.log *.log.gz | egrep '45.79.167[.]238|34.81.132[.]62|79.177.131[.]206|15.157.135[.]170|94.100.52[.]128|172.235.128[.]52'`

- Wordpress-Verzeichnis

`find . -type f -print0 | xargs -0 md5sum | egrep '2a1410d8e2a8337ac2171cedea8c0fdc47c647a0|58eca847e9eae9e6b08cc211f1559817b71bc4cc|ebea44890f434d5d67ede22009a3f4bb5cac33f8|d9a220c8039f1c4d72cae7ccb8b3a33dec8815be|e9756e2338f84746007235e4cab7a70d5b3ca47f'`

wiz.io/blog/wp2shell-cve-2026-

  • 0
  • 0
  • 0
  • 4h ago

Bluesky

Profile picture fallback
Hackers are exploiting the "wp2shell" critical vulnerability suite (CVE-2026-63030 and CVE-2026-60137) affecting WordPress Core to deploy persistent webshells and install malicious plugins on affected servers.
  • 1
  • 1
  • 0
  • 3h ago
Profile picture fallback
~Akamai~ Unauthenticated SQLi via WordPress REST Batch API escalates to full RCE on default installations. - IOCs: CVE-2026-63030, CVE-2026-60137 - #CVE202663030 #RCE #ThreatIntel #WordPress
  • 0
  • 0
  • 0
  • 16h ago
Profile picture fallback
📢 wp2shell : analyse technique approfondie des CVE-2026-63030 et CVE-2026-60137 dans WordPress 📝 ## 🔍 Contexte Publié le 18 juillet 2026 … https://cyberveille.ch/posts/2026-07-21-wp2shell-analyse-technique-approfondie-des-cve-2026-63030-et-cve-2026-60137-dans-wordpress/ #CVE_2026_60137 #Cyberveille
  • 0
  • 0
  • 0
  • Last hour
Profile picture fallback
~Cybergcca~ Canadian Cyber Centre flags 5 advisories; Microsoft and WordPress CVEs actively exploited in the wild. - IOCs: CVE-2026-56164, CVE-2026-60137, CVE-2026-63030 - #PatchNow #ThreatIntel #Vulnerability
  • 0
  • 0
  • 0
  • 4h ago

Overview

  • Microsoft
  • Microsoft SharePoint Enterprise Server 2016

14 Jul 2026
Published
20 Jul 2026
Updated

CVSS v3.1
CRITICAL (9.8)
EPSS
20.35%

KEV

Description

Deserialization of untrusted data in Microsoft Office SharePoint allows an unauthorized attacker to execute code over a network.

Statistics

  • 3 Posts
  • 1 Interaction

Last activity: 4 hours ago

Fediverse

Profile picture fallback

‼️ New Dark Web Informer Blog Post!

Title: Patching Is Not Enough: Critical SharePoint Deserialization RCE Under Active Exploitation (CVE-2026-50522)

Link: darkwebinformer.com/patching-i

💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: darkwebinformer.com/pricing

  • 0
  • 1
  • 0
  • 4h ago
Profile picture fallback

CVE-2026-50522 SharePoint RCE vulnerability exploited in the wild with public PoC exploitCVE-2026-50522, a critical SharePoint RCE flaw, is exploited in the wild. A public PoC exploit is out, so admins should patch SharePoint now.

securityonline.info/cve-2026-5

  • 0
  • 0
  • 0
  • 7h ago

Bluesky

Profile picture fallback
CVE-2026-50522 enables remote code execution in SharePoint Server via untrusted deserialization, and active exploitation has been detected with machine-key theft for persistence.
  • 0
  • 0
  • 0
  • 4h ago

Overview

  • Microsoft
  • Windows 10 Version 1607

09 Jun 2026
Published
15 Jul 2026
Updated

CVSS v3.1
HIGH (7.8)
EPSS
5.66%

KEV

Description

Integer underflow (wrap or wraparound) in Windows NT OS Kernel allows an authorized attacker to elevate privileges locally.

Statistics

  • 2 Posts
  • 3 Interactions

Last activity: 4 hours ago

Fediverse

Profile picture fallback

‼️ New Dark Web Informer Blog Post!

Title: Counting Below Zero: Integer Underflow to SYSTEM in the Windows NT Kernel (CVE-2026-42980)

Link: darkwebinformer.com/counting-b

💥 Get early visibility into underground claims, including unblurred screenshots, before they turn into headlines: darkwebinformer.com/pricing

  • 1
  • 1
  • 0
  • 4h ago
Profile picture fallback

A public PoC for CVE-2026-42980 details a Windows privilege escalation flaw in the kernel WMI code. It grants SYSTEM on unpatched builds.

securityonline.info/cve-2026-4

  • 1
  • 0
  • 0
  • 6h ago

Overview

  • Foxit Software Inc.
  • Foxit PDF Editor

08 Jul 2026
Published
09 Jul 2026
Updated

CVSS v3.1
HIGH (8.2)
EPSS
0.12%

KEV

Description

The user-controllable executable files will be directly executed by high-privilege processes, allowing low-privilege users to have the opportunity to elevate their privileges to NT AUTHORITY\SYSTEM.

Statistics

  • 2 Posts
  • 1 Interaction

Last activity: 13 hours ago

Fediverse

Profile picture fallback
[RSS] Escalating All The Privileges With Foxit PDF Reader (CVE-2026-57239)

https://blog.paradoxis.nl/escalating-all-the-privileges-with-foxit-pdf-reader-cve-2026-57239-582a78b60492
  • 1
  • 0
  • 0
  • 13h ago

Bluesky

Profile picture fallback
[RSS] Escalating All The Privileges With Foxit PDF Reader (CVE-2026-57239) blog.paradoxis.nl -> Original->
  • 0
  • 0
  • 0
  • 13h ago
Showing 1 to 10 of 77 CVEs