24h | 7d | 30d

Overview

  • Adobe
  • Acrobat Reader

10 Mar 2026
Published
11 Mar 2026
Updated

CVSS v3.1
HIGH (7.8)
EPSS
0.03%

KEV

Description

Acrobat Reader versions 24.001.30307, 24.001.30308, 25.001.21265 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Statistics

  • 1 Post
  • 1 Interaction

Last activity: 22 hours ago

Bluesky

Profile picture fallback
πŸ“Œ CVE-2026-27220 - Acrobat Reader versions 24.001.30307, 24.001.30308, 25.001.21265 and earlier are affected by a Use After Free vulnerability that could result in arbit... https://www.cyberhub.blog/cves/CVE-2026-27220
  • 1
  • 0
  • 0
  • 22h ago

Overview

  • Microsoft
  • Microsoft 365 Apps for Enterprise

26 Jan 2026
Published
22 Feb 2026
Updated

CVSS v3.1
HIGH (7.8)
EPSS
9.26%

Description

Reliance on untrusted inputs in a security decision in Microsoft Office allows an unauthorized attacker to bypass a security feature locally.

Statistics

  • 2 Posts
  • 1 Interaction

Last activity: 10 hours ago

Bluesky

Profile picture fallback
CVE-2026-21509: Actively Exploited Microsoft Office Security Feature Bypass β€” PoC Public, CISA KEV Listed
  • 1
  • 0
  • 1
  • 10h ago

Overview

  • Adobe
  • Acrobat Reader

10 Mar 2026
Published
12 Mar 2026
Updated

CVSS v3.1
HIGH (7.8)
EPSS
Pending

KEV

Description

Acrobat Reader versions 24.001.30307, 24.001.30308, 25.001.21265 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Statistics

  • 1 Post
  • 1 Interaction

Last activity: 8 hours ago

Bluesky

Profile picture fallback
πŸ“Œ CVE-2026-27278 - Acrobat Reader versions 24.001.30307, 24.001.30308, 25.001.21265 and earlier are affected by a Use After Free vulnerability that could result in arbit... https://www.cyberhub.blog/cves/CVE-2026-27278
  • 1
  • 0
  • 0
  • 8h ago

Overview

  • MBS
  • UBR-01 Mk II

09 Mar 2026
Published
09 Mar 2026
Updated

CVSS v3.1
HIGH (7.2)
EPSS
Pending

KEV

Description

A high-privileged remote attacker can fully compromise the device by abusing an update signature bypass vulnerability in the wwwupdate.cgi method in the web interface of UBR.

Statistics

  • 1 Post
  • 1 Interaction

Last activity: 17 hours ago

Bluesky

Profile picture fallback
πŸ“Œ CVE-2025-41767 - A high-privileged remote attacker can fully compromise the device by abusing an update signature bypass vulnerability in the wwwupdate.cgi method in t... https://www.cyberhub.blog/cves/CVE-2025-41767
  • 0
  • 1
  • 0
  • 17h ago

Overview

  • Siemens
  • SICAM SIAPP SDK

10 Mar 2026
Published
10 Mar 2026
Updated

CVSS v3.1
HIGH (7.4)
EPSS
Pending

KEV

Description

A vulnerability has been identified in SICAM SIAPP SDK (All versions < V2.1.7). The affected application builds shell commands with caller-provided strings and executes them. An attacker could influence the executed command, potentially resulting in command injection and full system compromise.

Statistics

  • 1 Post
  • 1 Interaction

Last activity: 2 hours ago

Bluesky

Profile picture fallback
πŸ“Œ CVE-2026-25573 - A vulnerability has been identified in SICAM SIAPP SDK (All versions < V2.1.7). The affected application builds shell commands with caller-provided st... https://www.cyberhub.blog/cves/CVE-2026-25573
  • 0
  • 1
  • 0
  • 2h ago

Overview

  • Unitree
  • UPK

27 Feb 2026
Published
27 Feb 2026
Updated

CVSS v3.1
HIGH (7.8)
EPSS
Pending

KEV

Description

Since the encryption algorithm used to protect firmware updates is itself encrypted using key material available to an attacker (or anyone paying attention), the firmware updates may be altered by an unauthorized user, and then trusted by a Unitree product, such as the Unitree Go2 and other models. This issue appears to affect all of Unitree’s current offerings as of February 26, 2026, and so should be considered a vulnerability in both the firmware generation and extraction processes. At the time of this release, there is no publicly-documented mechanism to subvert the update process and insert poisoned firmware packages without the equipment owner’s knowledge.

Statistics

  • 1 Post
  • 1 Interaction

Last activity: 12 hours ago

Bluesky

Profile picture fallback
πŸ“Œ CVE-2026-1442 - Since the encryption algorithm used to protect firmware updates is itself encrypted using key material available to an attacker (or anyone paying atte... https://www.cyberhub.blog/cves/CVE-2026-1442
  • 0
  • 1
  • 0
  • 12h ago

Overview

  • Adobe
  • Illustrator

10 Mar 2026
Published
11 Mar 2026
Updated

CVSS v3.1
HIGH (7.8)
EPSS
0.02%

KEV

Description

Illustrator versions 29.8.4, 30.1 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Statistics

  • 1 Post
  • 1 Interaction

Last activity: 22 hours ago

Bluesky

Profile picture fallback
πŸ“Œ CVE-2026-27267 - Illustrator versions 29.8.4, 30.1 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code executio... https://www.cyberhub.blog/cves/CVE-2026-27267
  • 0
  • 1
  • 0
  • 22h ago

Overview

  • Mozilla
  • Firefox

24 Feb 2026
Published
26 Feb 2026
Updated

CVSS
Pending
EPSS
Pending

KEV

Description

Sandbox escape due to incorrect boundary conditions in the Graphics: WebRender component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, Firefox ESR < 140.8, Thunderbird < 148, and Thunderbird < 140.8.

Statistics

  • 1 Post

Last activity: 8 hours ago

Bluesky

Profile picture fallback
The SUSE-SU-2026:0871-1 advisory for MozillaFirefox is out. It's a big one: 37 CVEs, including multiple sandbox escapes (CVE-2026-2760, -2768) that bypass browser security. Read more: πŸ‘‰ tinyurl.com/mtuv8f7e #Security #SUSE
  • 0
  • 0
  • 0
  • 8h ago

Overview

  • Microsoft
  • Azure IoT Explorer

10 Mar 2026
Published
12 Mar 2026
Updated

CVSS v3.1
HIGH (7.5)
EPSS
Pending

KEV

Description

Missing authentication for critical function in Azure IoT Explorer allows an unauthorized attacker to disclose information over a network.

Statistics

  • 1 Post

Last activity: Last hour

Bluesky

Profile picture fallback
πŸ“Œ CVE-2026-23662 - Missing authentication for critical function in Azure IoT Explorer allows an unauthorized attacker to disclose information over a network. https://www.cyberhub.blog/cves/CVE-2026-23662
  • 0
  • 0
  • 0
  • Last hour

Overview

  • Microsoft
  • Windows 10 Version 1809

10 Mar 2026
Published
12 Mar 2026
Updated

CVSS v3.1
HIGH (7.0)
EPSS
Pending

KEV

Description

Use after free in Broadcast DVR allows an authorized attacker to elevate privileges locally.

Statistics

  • 1 Post

Last activity: Last hour

Bluesky

Profile picture fallback
πŸ“Œ CVE-2026-23667 - Use after free in Broadcast DVR allows an authorized attacker to elevate privileges locally. https://www.cyberhub.blog/cves/CVE-2026-23667
  • 0
  • 0
  • 0
  • Last hour
Showing 11 to 20 of 92 CVEs