24h | 7d | 30d

Overview

  • Cisco
  • Cisco Catalyst SD-WAN Manager

15 Jun 2026
Published
16 Jun 2026
Updated

CVSS v3.1
MEDIUM (6.5)
EPSS
Pending

Description

A vulnerability in the web UI of Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an authenticated, remote attacker to create a file or overwrite any file on the filesystem of an affected system. This vulnerability exists because the affected software does not properly validate user-supplied input during a file upload process. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected API endpoint of the affected system. A successful exploit could allow the attacker to create or overwrite any file on the underlying operating system. This file could later be used to elevate to root. To exploit this vulnerability, the attacker must have valid credentials with at least a lower-privileged, single-task user account.

Statistics

  • 18 Posts
  • 9 Interactions

Last activity: 3 hours ago

Fediverse

Profile picture fallback

Neue Woche, neues #Zero-Day Sicherheitsloch bei Cisco

Wie langweilig - oder sicher - wäre doch das Leben ohne Cisco! Die letzte Entdeckung ist gerade mal eine Woche her, da kommt der US-Hersteller Cisco mit der nächsten Sicherheitslücke CVE-2026-20262 um die Ecke, die bereits ausgenutzt wird! Wieder steckt sie im Catalyst SD-WAN Manager, wieder ist die Ursache "the affected software does not properly validate user-supplied input during a file upload process. An attacker could exploit this vulnerability by sending a crafted HTTP request...". Wenn es aussieht wie eine Ente, quakt wie eine Ente und watschelt wie eine Ente, ist es? Ja, auch diese Lücke stinkt nach

pc-fluesterer.info/wordpress/2

#0day #backdoor #closedsource #cybercrime #exploits #hersteller #sicherheit #UnplugTrump #usa #wissen

  • 2
  • 1
  • 0
  • 7h ago
Profile picture fallback

Cisco has confirmed that CVE-2026-20262, an arbitrary file write vulnerability in Cisco Catalyst SD-WAN Manager, is currently under active exploitation. CISA has added this flaw to its Known Exploited Vulnerabilities catalog and urges users to apply available security patches to prevent potential privilege escalation.
securityaffairs.com/193693/sec

  • 1
  • 0
  • 0
  • 4h ago
Profile picture fallback

🚨 CRITICAL: Cisco Catalyst SD-WAN Manager zero-day (CVE-2026-20262) exploited in the wild. Attackers w/ write access can escalate to root via crafted HTTP requests. Patch now & review access controls! radar.offseq.com/threat/cisco-

  • 0
  • 0
  • 0
  • 7h ago
Profile picture fallback

CSUITE CRITICAL: Cisco Catalyst SD-WAN Manager CVE-2026-20262 is under active exploitation. Path traversal flaw allows unauthorized file access. Review our full forensic intelligence brief to secure your SD-WAN perimeter and prevent persistence. Act now. thecybermind.co/8bs2

  • 0
  • 0
  • 1
  • 5h ago
Profile picture fallback

CVE-2026-20262 affects Cisco Catalyst SD-WAN Manager: insufficient file upload validation allows authenticated attackers to write arbitrary files and escalate privileges to root. Impacts all deployment models. Watch logs for...

captechgroup.com/about-us/thre

  • 0
  • 0
  • 0
  • 3h ago
Profile picture fallback

Cisco recently became aware of the exploitation of CVE-2026-20262, a Catalyst SD-WAN Manager zero-day that allows arbitrary file write. securityweek.com/cisco-patches

  • 0
  • 0
  • 1
  • 3h ago

Bluesky

Profile picture fallback
Cisco patched a Catalyst SD-WAN Manager web UI flaw (CVE-2026-20262) already exploited for root privileges via crafted file-upload requests.
  • 1
  • 0
  • 0
  • 18h ago
Profile picture fallback
CVE-2026-20262 in Catalyst SD-WAN Manager enables arbitrary file write via crafted HTTP requests, requiring valid write-capable credentials and potentially leading to root escalation.
  • 0
  • 1
  • 0
  • 10h ago
Profile picture fallback
Cisco patched CVE-2026-20262 in Catalyst SD-WAN Manager after in-the-wild zero-day abuse let authenticated attackers overwrite files and escalate to root. Affects all deployment types. #Cisco #SDWAN #ZeroDay
  • 0
  • 0
  • 0
  • 20h ago
Profile picture fallback
シスコ、ゼロデイ攻撃で悪用されたSD-WAN vManageの脆弱性を修正(CVE-2026-20262) | Codebook|Security News https://codebook.machinarecord.com/threatreport/silobreaker-cyber-alert/46219/
  • 0
  • 0
  • 0
  • 8h ago
Profile picture fallback
Cisco discloses second exploited SD-WAN vulnerability in two weeks (CVE-2026-20262) 📖 Read more: www.helpnetsecurity.com/2026/06/16/c... #cybersecurity #cybersecuritynews #0day #APT #SDWAN @cisco.com
  • 0
  • 0
  • 0
  • 6h ago
Profile picture fallback
Cisco says CVE-2026-20262 is being exploited in limited attacks against Catalyst SD-WAN Manager, enabling arbitrary file writes and possible privilege escalation. CISA added it to KEV. #Cisco #SDWAN #CISA
  • 0
  • 0
  • 0
  • 5h ago
Profile picture fallback
References: - Mandiant/GTIG: PRC targets US medical research: cloud.google.com/blog/topics/... - Mandiant X post: x.com/Mandiant/sta... - CISA KEV catalog: www.cisa.gov/sites/defaul... - Cisco advisory CVE-2026-20262: sec.cloudapps.cisco.com/security/cen...
  • 0
  • 0
  • 0
  • 4h ago
Profile picture fallback
~Cisa~ CISA added CVE-2026-20262 (Cisco SD-WAN) and CVE-2026-54420 (LiteSpeed cPanel) to its KEV catalog due to active exploitation. - IOCs: CVE-2026-20262, CVE-2026-54420 - #CISA #CVE202620262 #CVE202654420 #KEV #threatintel
  • 1
  • 0
  • 0
  • 20h ago
Profile picture fallback
CISAが既知の悪用された脆弱性2件をカタログに追加 CVE-2026-20262 Cisco Catalyst SD-WAN Managerのディレクトリまたはパスのトラバーサル脆弱性 CVE-2026-54420 LiteSpeed cPanelプラグインのUNIXシンボリックリンク(Symlink)の脆弱性 www.cisa.gov/news-events/...
  • 1
  • 0
  • 0
  • 16h ago
Profile picture fallback
Also watch the KEV layer. CISA added Cisco Catalyst SD-WAN Manager CVE-2026-20262 and LiteSpeed cPanel Plugin CVE-2026-54420 on June 15. Cisco = enterprise control plane risk. LiteSpeed = shared hosting blast radius. Refs: www.cisa.gov/sites/defaul... sec.cloudapps.cisco.com/security/cen...
  • 1
  • 0
  • 0
  • 4h ago

Overview

  • LiteSpeed Technologies
  • cPanel Plugin
  • WHM and cPanel PlugIn

14 Jun 2026
Published
16 Jun 2026
Updated

CVSS v3.1
HIGH (8.5)
EPSS
0.35%

Description

LiteSpeed cPanel plugin before 2.4.8 (as distributed in LiteSpeed WHM PlugIn before 5.3.2.0) mishandles symlinks provided by a user with FTP or web shell access on a shared hosting server running CloudLinux/CageFS, as exploited in the wild in May 2026.

Statistics

  • 10 Posts
  • 16 Interactions

Last activity: 4 hours ago

Fediverse

Profile picture fallback

Active exploitation verified by CISA: CVE-2026-54420 exposes LiteSpeed cPanel environments to critical symlink privilege escalation. Threat actors are actively breaching shared hosting isolation. Read the full high-authority C-Suite briefing from The Cyber Mind Co. to harden your perimeter right now. thecybermind.co/ez9o

  • 1
  • 0
  • 0
  • 18h ago
Profile picture fallback

Stop symlink privilege escalation in its tracks. The Cyber Mind Co. has deployed the T-Suite Defense Playbook for CVE-2026-54420, featuring kernel overrides and FIM rules to protect LiteSpeed cPanel environments. Lock down your shared hosting infrastructure now: thecybermind.co/q7ni

  • 1
  • 0
  • 0
  • 16h ago
Profile picture fallback

"CISA warns of another cPanel plugin flaw exploited in attacks"

"[...] government agencies three days to secure their servers against an actively exploited vulnerability (CVE-2026-54420) in the LiteSpeed cPanel user-end plugin. Cybersecurity and Infrastructure Security Agency (CISA) has given U.S. The U.S."

bleepingcomputer.com/news/secu

  • 1
  • 0
  • 0
  • 5h ago

Bluesky

Profile picture fallback
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has given U.S. government agencies three days to secure their servers against an actively exploited vulnerability (CVE-2026-54420) in the LiteSpeed cPanel user-end plugin.
  • 3
  • 5
  • 0
  • 5h ago
Profile picture fallback
CISA added CVE-2026-54420 in LiteSpeed cPanel Plugin to KEV, requiring FCEB agencies to patch by June 18, 2026.
  • 1
  • 1
  • 0
  • 10h ago
Profile picture fallback
Vulnerabilità critica in LiteSpeed cPanel sfruttata attivamente: il CISA avverte! 📌 Link all'articolo : www.redhotcyber.com/post/vulnera... A cura di Redazione RHC #redhotcyber #news #cybersecurity #hacking #vulnerabilita #cisa #cve202654420 #liteSpeed #cpanel
  • 0
  • 0
  • 0
  • 8h ago
Profile picture fallback
- LiteSpeed advisory CVE-2026-54420: blog.litespeedtech.com/2026/06/01/s... - FIRST EPSS CVE-2026-54420: api.first.org/data/v1/epss...
  • 0
  • 0
  • 0
  • 4h ago
Profile picture fallback
~Cisa~ CISA added CVE-2026-20262 (Cisco SD-WAN) and CVE-2026-54420 (LiteSpeed cPanel) to its KEV catalog due to active exploitation. - IOCs: CVE-2026-20262, CVE-2026-54420 - #CISA #CVE202620262 #CVE202654420 #KEV #threatintel
  • 1
  • 0
  • 0
  • 20h ago
Profile picture fallback
CISAが既知の悪用された脆弱性2件をカタログに追加 CVE-2026-20262 Cisco Catalyst SD-WAN Managerのディレクトリまたはパスのトラバーサル脆弱性 CVE-2026-54420 LiteSpeed cPanelプラグインのUNIXシンボリックリンク(Symlink)の脆弱性 www.cisa.gov/news-events/...
  • 1
  • 0
  • 0
  • 16h ago
Profile picture fallback
Also watch the KEV layer. CISA added Cisco Catalyst SD-WAN Manager CVE-2026-20262 and LiteSpeed cPanel Plugin CVE-2026-54420 on June 15. Cisco = enterprise control plane risk. LiteSpeed = shared hosting blast radius. Refs: www.cisa.gov/sites/defaul... sec.cloudapps.cisco.com/security/cen...
  • 1
  • 0
  • 0
  • 4h ago

Overview

  • Microsoft
  • Microsoft 365 Copilot

04 Jun 2026
Published
15 Jun 2026
Updated

CVSS v3.1
MEDIUM (6.5)
EPSS
0.50%

KEV

Description

Improper neutralization of special elements used in a command ('command injection') in M365 Copilot allows an unauthorized attacker to disclose information over a network.

Statistics

  • 6 Posts
  • 13 Interactions

Last activity: 1 hour ago

Fediverse

Profile picture fallback

The most interesting thing about the new SearchLeak attack on Microsoft 365 Copilot isn't any single bug. It's that none of the three pieces was dangerous on its own. Varonis combined a prompt injection via a URL parameter, an HTML rendering race condition, and a server-side request forgery in Bing's image search. Each of these is a common bug that security teams usually consider minor. But when you put them together with a Copilot that can access your mailbox, OneDrive, and SharePoint, they create a critical flaw. Microsoft has since patched this issue (CVE-2026-42824).

This is how the attack worked:

* The victim clicks a link. That's the whole interaction. They type nothing.

* The link instructs Copilot to search the mailbox, find sensitive information such as access codes, and place it into an image URL.

* Bing retrieves that image, which sends the stolen data to the attacker's server. Bing serves as the delivery service, allowing the attack to bypass the content security policy intended to stop it.

From the user's perspective, Copilot just pauses for a moment. There is no visible sign that any data has been taken.

In the past, we've spent years rating bugs by their severity on their own. An SSRF here, an HTML injection there—each seemed minor. But when an AI assistant can follow instructions from untrusted input and access your real data, those minor bugs become much more serious. Old types of vulnerabilities become important again in this new context.

If your company uses Copilot or any AI assistant that can access company data, it is important to ask your team how they are rating bugs that affect it. The way we judge what is low risk has changed.

bleepingcomputer.com/news/secu

  • 6
  • 3
  • 0
  • 21h ago
Profile picture fallback

SearchLeak:Microsoft 365 Copilotのワンクリック脆弱性により機微なデータの窃取が可能に(CVE-2026-42824) | Codebook|Security News yayafa.com/2823631/ #AgenticAi #AI #ArtificialGeneralIntelligence #ArtificialIntelligence #Copilot #Microsoft #MicrosoftAI #MicrosoftCopilot #エージェント型AI #人工知能 #汎用人工知能

  • 1
  • 0
  • 0
  • 5h ago

Bluesky

Profile picture fallback
One-click SearchLeak in Microsoft 365 Copilot could expose emails, calendar details, files, and MFA codes via a trusted Microsoft link. Microsoft tagged it CVE-2026-42824 and mitigated it server-side. #SearchLeak #CVE2026 #Microsoft365
  • 1
  • 0
  • 0
  • 19h ago
Profile picture fallback
SearchLeak:Microsoft 365 Copilotのワンクリック脆弱性により機微なデータの窃取が可能に(CVE-2026-42824) | Codebook|Security News https://codebook.machinarecord.com/threatreport/silobreaker-cyber-alert/46210/
  • 1
  • 0
  • 0
  • 8h ago
Profile picture fallback
SearchLeak:Microsoft 365 Copilotのワンクリック脆弱性により機微なデータの窃取が可能に(CVE-2026-42824) | Codebook|Security News https://www.yayafa.com/2823631/ SearchLeak:Microso…
  • 1
  • 0
  • 0
  • 5h ago
Profile picture fallback
Microsoft 365 Copilot SearchLeak (CVE-2026-42824): The One-Click AI Data Exfiltration Flaw That Exposes the Hidden Dangers of Over-Permissioned Data + Video Introduction: The integration of Large Language Models (LLMs) into enterprise productivity suites has ushered in a new era of efficiency, but…
  • 0
  • 0
  • 0
  • 1h ago

Overview

  • SimpleHelp
  • SimpleHelp

12 Jun 2026
Published
13 Jun 2026
Updated

CVSS v4.0
CRITICAL (9.5)
EPSS
0.20%

KEV

Description

SimpleHelp versions 5.5.15 and prior and 6.0 pre-release versions contain an authentication bypass vulnerability in the OIDC authentication flow. When OIDC authentication is configured, identity tokens submitted during login are accepted without verifying their cryptographic signature. In a vulnerable configuration, a remote, unauthenticated attacker can submit a forged token containing arbitrary identity claims to obtain a fully authenticated technician session. In some configurations, this may also allow bypass of multi-factor authentication. No user interaction is required.

Statistics

  • 3 Posts
  • 1 Interaction

Last activity: 3 hours ago

Fediverse

Profile picture fallback

Critical SimpleHelp Zero-Day CVE-2026-48558 Enables MFA Bypass While Google Uncovers UNC6508 Espionage Campaign Hidden Since 2023 + Video

Breaking Security Landscape Overview The cybersecurity ecosystem has been shaken by two parallel revelations that expose how fragile modern digital infrastructure remains. On one side, a severe vulnerability in SimpleHelp remote support software allows attackers to bypass authentication protections and create privileged technician…

undercodenews.com/critical-sim

  • 0
  • 0
  • 0
  • 14h ago

Bluesky

Profile picture fallback
Critical SimpleHelp flaw CVE-2026-48558 lets unauthenticated attackers create privileged Technician accounts when OIDC is enabled, bypassing MFA. Fixes are in 5.5.16 and 6.0RC2. #SimpleHelp #CVE202648558 #OIDC
  • 1
  • 0
  • 0
  • 17h ago
Profile picture fallback
SimpleHelp RMM flaw could give attackers full access to managed endpoints (CVE-2026-48558) 📖 Read more: www.helpnetsecurity.com/2026/06/16/s... #MSP #remotemanagement #SMBs #vulnerability #RMM #SimpleHelp #cybersecurity #cybersecuritynews @horizon3ai.bsky.social
  • 0
  • 0
  • 0
  • 3h ago

Overview

  • Google
  • Chrome

08 Jun 2026
Published
10 Jun 2026
Updated

CVSS
Pending
EPSS
0.71%

Description

Out of bounds read and write in V8 in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)

Statistics

  • 2 Posts
  • 2 Interactions

Last activity: 7 hours ago

Fediverse

Profile picture fallback

For anyone here who is using Google Chrome, update your Chrome to 149.0.7827.102/103 (Windows/Mac) and 149.0.7827.102 (Linux).

Google patches actively exploited vulnerability and 73 others. The actively exploited in the wild is tracked as CVE-2026-11645, the one which “Out of bounds read and write in V8 in Google Chrome prior to 149.0.7827.103 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.”

The vulnerability allows malicious website to execute arbitrary code in the Chrome sandbox. Just because your browser is in a sandbox, it only limits the severity of an attack, as any attempts of cyber attack usually need to chain multiple vulnerabilities to achieve serious compromise.

malwarebytes.com/blog/bugs/202

#cybersecurity #tech #google #googlechrome #chrome #browser

  • 1
  • 1
  • 0
  • 14h ago

Bluesky

Profile picture fallback
Google Chrome: Critical V8 Use-After-Free Zero-Day CVE-2026-11645 ##Google ##Chrome ##ZeroDay ##RCE ##V8Engine https://flagthis.com/newsletter/2026/06/16#story-2908
  • 0
  • 0
  • 0
  • 7h ago

Overview

  • Jenkins Project
  • Jenkins

10 Jun 2026
Published
11 Jun 2026
Updated

CVSS
Pending
EPSS
0.37%

KEV

Description

In Jenkins 2.567 and earlier, LTS 2.555.2 and earlier, it is possible for attackers to have Jenkins deserialize arbitrary types defined in Jenkins core or plugins from an attacker-controlled `config.xml` submission in a way that allows them to handle HTTP requests afterwards. This can be used to impersonate any user and send HTTP requests on their behalf, up to and including use of the Script Console to run arbitrary code, or to read arbitrary files from the Jenkins controller.

Statistics

  • 2 Posts
  • 2 Interactions

Last activity: 8 hours ago

Fediverse

Profile picture fallback

🚨 CVE-2026-53435, a high severity (CVSS 8.8) deserialization vulnerability in Jenkins is now seeing active exploitation as per Defused

Scan your infrastructure: github.com/rxerium/rxerium-tem

Patches are available per the vendor advisory: jenkins.io/security/advisory/2

  • 0
  • 0
  • 0
  • 8h ago

Bluesky

Profile picture fallback
Jenkinsのリモートコード実行(RCE)脆弱性CVE-2026-53435が現在悪用されています Jenkins RCE Vulnerability CVE-2026-53435 Now Under Active Exploitation #DailyCyberSecurity (Jun 15) securityonline.info/jenkins-rce-...
  • 0
  • 2
  • 0
  • 16h ago

Overview

  • Palo Alto Networks
  • Cloud NGFW

13 May 2026
Published
09 Jun 2026
Updated

CVSS v4.0
HIGH (7.8)
EPSS
18.58%

Description

Authentication bypass vulnerabilities in the GlobalProtect portal and gateway of Palo Alto Networks PAN-OS® software allows the attacker to bypass security restrictions and establish an unauthorized VPN connection. Panorama and Cloud NGFW are not impacted by these issues.

Statistics

  • 3 Posts

Last activity: 3 hours ago

Fediverse

Profile picture fallback

The vulnerability in question is CVE-2026-0257 (CVSS score: 7.8), an authentication bypass flaw affecting the portal and gateway components of PAN-OS software that could be exploited by bad actors to set up VPN connections. thehackernews.com/2026/06/palo

  • 0
  • 0
  • 1
  • 3h ago

Bluesky

Profile picture fallback
Palo Alto Networksは、PAN-OSの脆弱性におけるVPNバイパス攻撃(CVE-2026-0257)の悪用について警告を発しました Palo Alto Warns of Exploitation of VPN Bypass Exploits (CVE-2026-0257) in PAN-OS Flaw #SecurityAffairs (Jun 15) securityaffairs.com/193638/secur...
  • 0
  • 0
  • 0
  • 16h ago

Overview

  • Microsoft
  • Windows 10 Version 1607

10 Mar 2026
Published
14 Apr 2026
Updated

CVSS v3.1
HIGH (8.8)
EPSS
Pending

KEV

Description

Improper restriction of names for files and other resources in Active Directory Domain Services allows an authorized attacker to elevate privileges over a network.

Statistics

  • 2 Posts

Last activity: 13 hours ago

Fediverse

Profile picture fallback

Active Directory Under Siege and EtherRAT Surge Across Malicious Infrastructure Signals a New Wave of Enterprise Exploitation + Video

Introduction: A Growing Shadow Over Identity and Infrastructure Security Enterprise environments are once again under pressure as two separate but equally alarming cybersecurity developments surface from recent threat intelligence reports. On one side, a critical Active Directory vulnerability identified as CVE-2026-25177 reveals how…

undercodenews.com/active-direc

  • 0
  • 0
  • 0
  • 13h ago

Bluesky

Profile picture fallback
CVE-2026-25177 shows why Active Directory flaws need more than patching: SPN manipulation and Kerberos abuse can raise privileges, so least-privilege governance and tight service account control are essential. #ActiveDirectory #Kerberos #PrivEsc
  • 0
  • 0
  • 0
  • 16h ago

Overview

  • redis
  • redis

05 May 2026
Published
06 May 2026
Updated

CVSS v4.0
HIGH (7.7)
EPSS
0.12%

KEV

Description

Redis is an in-memory data structure store. In redis-server from 7.2.0 until 8.6.3, the unblock client flow does not handle an error return from `processCommandAndResetClient` when re-executing a blocked command. If a blocked client is evicted during this flow, an authenticated attacker can trigger a use-after-free that may lead to remote code execution. This has been patched in version 8.6.3.

Statistics

  • 1 Post
  • 3 Interactions

Last activity: 11 hours ago

Bluesky

Profile picture fallback
The latest update for #Sentrium includes "Should #penetrationtesting be performed in staging or production?" and "#Redis Use-After-Free Remote Code Execution Vulnerability (CVE-2026-23479)". #Cybersecurity #PenTesting #infosec https://opsmtrs.com/3aPKkxS
  • 1
  • 2
  • 0
  • 11h ago

Overview

  • Oracle Corporation
  • PeopleSoft Enterprise PeopleTools

11 Jun 2026
Published
13 Jun 2026
Updated

CVSS v3.1
CRITICAL (9.8)
EPSS
0.72%

Description

Vulnerability in the PeopleSoft Enterprise PeopleTools product of Oracle PeopleSoft (component: Updates Environment Management). Supported versions that are affected are 8.61 and 8.62. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise PeopleSoft Enterprise PeopleTools. Successful attacks of this vulnerability can result in takeover of PeopleSoft Enterprise PeopleTools. CVSS 3.1 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).

Statistics

  • 1 Post
  • 1 Interaction

Last activity: 22 hours ago

Bluesky

Profile picture fallback
CVE-2026-35273 in Oracle PeopleSoft 8.61/8.62 enables unauthenticated remote code execution and is already being exploited against internet-exposed organizations.
  • 1
  • 0
  • 0
  • 22h ago
Showing 1 to 10 of 59 CVEs