Tag: cve-2025-48595

soc

CVE-2026-73749: HPE ArubaOS-CX RCE

CVE-2026-73749: HPE ArubaOS-CX RCE HPE patched CVE-2026-73749, a critical unauthenticated Remote Code Execution (RCE) vulnerability in HPE Aruba Networking AOS-CX , also known as ArubaOS-CX . The flaw affects an AOS-CX d

Mehr lesen →
soc

CVE-2026-85046: Actively Exploited Chrome V8 Zero-Day Enables Code Execution

Google has released an emergency Chrome security update addressing a high-severity zero-day vulnerability that is already being exploited in the wild. Tracked as CVE-2026-85046 and rated 8.8 on the CVSS scale, the flaw is a type confusion issue in V8, the JavaScript and WebAssembly engine used by Google Chrome. Successful exploitation can allow a remote […]

Mehr lesen →
soc

CVE-2026-83548 and CVE-2026-83549: SonicWall SMA 1000 Zero-Days Exploited in the Wild

SonicWall has released emergency security updates for two vulnerabilities affecting its Secure Mobile Access (SMA) 1000 series appliances after confirming that both flaws have been exploited in the wild. Tracked as CVE-2026-83548 and CVE-2026-83549, the issues affect the Appliance Work Place and Appliance Management Console components and may be chained to move from unauthenticated external […]

Mehr lesen →
soc

CVE-2026-82329: Critical JFrog Artifactory Authentication Bypass Exploited in the Wild

A critical authentication bypass vulnerability in JFrog Artifactory moved into active exploitation only days after its public disclosure. Tracked as CVE-2026-82329 and rated 9.8 on the CVSS scale, the flaw can allow an unauthenticated attacker with network access to obtain administrator-level privileges on vulnerable Artifactory instances. JFrog disclosed and patched the issue on August 28, […]

Mehr lesen →
soc

CVE-2026-81578: Exploited PaperCut Authentication Bypass Chains to Pre-Auth RCE

PaperCut is responding to active attacks targeting its NG and MF print management platforms through a pair of zero-day vulnerabilities that can be chained to achieve unauthenticated remote code execution. One of the flaws, tracked as CVE-2026-81578, is a high-severity authentication bypass that enables a remote attacker to modify sensitive PaperCut configuration without first logging […]

Mehr lesen →