|
CVE-2026-18556 and CVE-2026-18577 - Unauthenticated Administrative Account Takeover and Additional Attack Path in N-able's N-central Product
|
|
4
|
15
|
August 11, 2026
|
|
CVE-2026-63077: Critical Unauth RCE in JetBrains TeamCity via Deserialization of Untrusted Data
|
|
0
|
9
|
August 10, 2026
|
|
CVE-2026-64638: XSS2Shell Does What It Says; Patch WordPress Now
|
|
0
|
24
|
August 8, 2026
|
|
Minnesota water system suffers a breach due to exposed access keys
|
|
3
|
59
|
August 5, 2026
|
|
CVE-2026-66066: KindaRails2Shell: RCE in Rails via Active Storage
|
|
0
|
22
|
August 1, 2026
|
|
CVE-2026-64600 RefluXFS LPE
|
|
0
|
14
|
July 27, 2026
|
|
Microsoft SharePoint CVE-2026-50522
|
|
17
|
101
|
July 26, 2026
|
|
CVE-2026-16232 Authentication Bypass in Check Point Smart Console EITW
|
|
0
|
16
|
July 23, 2026
|
|
CVE-2026-63030 and CVE-2026-60137: WP2Shell: Pre-Auth RCE in WordPress EITW
|
|
7
|
75
|
July 19, 2026
|
|
CVE-2026-43499: GhostLock, Yet Another Linux LPE/Container Escape
|
|
0
|
48
|
July 9, 2026
|
|
CVE-2026-11405: Multiple Tenda Routers Have an Admin Backdoor
|
|
0
|
39
|
July 7, 2026
|
|
CVE-2026-53359, "Januscape:" KVM Escape/Host Panic on x86_64
|
|
0
|
18
|
July 7, 2026
|
|
Bad Epoll LPE - Linux Kernel - CVE-2026-46242
|
|
0
|
30
|
July 3, 2026
|
|
FUSE readdir cache - Unprivileged LPE - CVE 2026-31694
|
|
0
|
16
|
July 2, 2026
|
|
Stealers Exploit CVE-2026-48558 in SimpleHelp Attack
|
|
2
|
74
|
June 30, 2026
|
|
Libssh2 vulnerability before 1.11.1 - CVE-2026-55200
|
|
4
|
52
|
June 30, 2026
|
|
CVE-2026-50656: RoguePlanet, A Race condition in Windows Defender => LPE
|
|
1
|
137
|
June 29, 2026
|
|
CVE-2026-20253: Critical RCE in Splunk Enterprise EITW
|
|
0
|
22
|
June 26, 2026
|
|
CVE-2026-20230: SSRF Vulnerability in Cisco Unified CM SME, EITW
|
|
0
|
19
|
June 26, 2026
|
|
CVE-2026-20245: Privilege Escalation Vulnerability in Cisco Catalyst SD-WAN Controller EITW
|
|
0
|
41
|
June 5, 2026
|
|
CVE-2026-20262: Cisco Catalyst SD-WAN EITW
|
|
1
|
39
|
June 24, 2026
|
|
CVE-2026-35273: Oracle PeopleSoft PeopleTools Vuln Exploited by ShinyHunters
|
|
1
|
53
|
June 12, 2026
|
|
CVE-2026-10520: Ivanti Sentry Preauth Command Injection EITW
|
|
1
|
80
|
June 11, 2026
|
|
CVE-2026-42771 (LiteLLM) exploited in the wild
|
|
0
|
31
|
June 10, 2026
|
|
CVE-2026-50752: CheckPoint VPN Authentication bypass EITW
|
|
2
|
39
|
June 9, 2026
|
|
Chaotic Eclipse/Nightmare Eclipse drops two Windows 0days (CVE-2026-45585)
|
|
5
|
320
|
June 9, 2026
|
|
CVE-2026-23111 Presumed new LPE
|
|
0
|
24
|
June 9, 2026
|
|
CVE-2026-46290: Yet another Linux Kernel flaw
|
|
0
|
30
|
June 8, 2026
|
|
CVE-2026-9256 for nginx, vulnerability in 'ngx_http_rewrite_module'
|
|
4
|
59
|
June 7, 2026
|
|
CVE-2026-0257: PAN-OS GlobalProtect Authentication Bypass EITW
|
|
2
|
44
|
June 6, 2026
|