Tag: critical

soc

CVE-2026-76460: Critical Cisco ISE Zero-Day Authentication Bypass Exploited in the Wild

Cisco has released emergency security updates for a maximum-severity vulnerability affecting Identity Services Engine (ISE) and ISE Passive Identity Connector (ISE-PIC) after confirming active exploitation in the wild. Tracked as CVE-2026-76460 and rated 10.0 on the CVSS scale, the flaw allows an unauthenticated remote attacker to bypass authentication and gain unauthorized access to a vulnerable […]

Mehr lesen →
soc

CVE-2026-76461: Critical Cisco Secure Email Gateway Zero-Day Enables Root RCE

Cisco has patched CVE-2026-76461, a critical zero-day vulnerability in Secure Email Gateway appliances that is already being exploited in the wild. The flaw carries a CVSS score of 9.8 and enables an unauthenticated remote attacker to execute arbitrary commands with root privileges on the underlying operating system simply by sending a specially crafted email through […]

Mehr lesen →
soc

CVE-2026-85706: Critical GitLab Path Traversal Flaw Exploited in the Wild

GitLab has released emergency security updates for a maximum-severity vulnerability in Community Edition (CE) and Enterprise Edition (EE) that allows unauthenticated attackers to read arbitrary files from vulnerable servers. Tracked as CVE-2026-85706 and rated 10.0 on the CVSS scale, the flaw resides in the repository commits API and results from improper path confinement combined with […]

Mehr lesen →