soc

📅 Kalender

< September 2026 >
Mo
Di
Mi
Do
Fr
Sa
So
12
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
Gefiltert nach: 2. September 2026
soc

CVE-2026-82329: Critical JFrog Artifactory Authentication Bypass Exploited in the Wild

A critical authentication bypass vulnerability in JFrog Artifactory moved into active exploitation only days after its public disclosure. Tracked as CVE-2026-82329 and rated 9.8 on the CVSS scale, the flaw can allow an unauthenticated attacker with network access to obtain administrator-level privileges on vulnerable Artifactory instances. JFrog disclosed and patched the issue on August 28, […]

Mehr lesen →
soc

CVE-2026-76658: Critical HPE Fabric Composer Flaw Enables Unauthenticated Remote Code Execution

HPE has released security updates addressing a maximum-severity remote code execution vulnerability affecting its network fabric management platform. Tracked as CVE-2026-76658 and rated 10.0 on the CVSS v3.1 scale, the flaw can allow an unauthenticated remote attacker to gain administrative access and execute arbitrary commands as a privileged operating-system user. The vulnerability resides in the […]

Mehr lesen →
soc

CVE-2026-81578: Exploited PaperCut Authentication Bypass Chains to Pre-Auth RCE

PaperCut is responding to active attacks targeting its NG and MF print management platforms through a pair of zero-day vulnerabilities that can be chained to achieve unauthenticated remote code execution. One of the flaws, tracked as CVE-2026-81578, is a high-severity authentication bypass that enables a remote attacker to modify sensitive PaperCut configuration without first logging […]

Mehr lesen →
soc

CISA Adds Seven Known Exploited Vulnerabilities to Catalog

CISA has added seven new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation.   CVE-2026-9586 Sangoma Switchvox SQL Injection Vulnerability  CVE-2026-48710 Kludex Starlette HTTP Request/Response Smuggling Vulnerability  CVE-2026-49869 Kestra OSS OS Command Injection Vulnerability  CVE-2026-59822 BerriAI LiteLLM Improper Authentication Vulnerability  CVE-2026-82329 JFrog Artifactory Improper Authentication Vulnerability  CVE-2026-83548 SonicWall SMA1000 […]

Mehr lesen →