Visualização normal

Antes de ontemCybersecurity News
  • ✇Cybersecurity News
  • Public Disclosure: Unpatched Log4j RCE Flaw in FilteredObjectInputStream, No CVE Assigned Do Son
    An unpatched Log4j RCE vulnerability was publicly disclosed on Apache's issue tracker. No CVE is assigned and no fix exists yet. Workaround inside. Related Posts: GitLab Updates Fix Arbitrary Command Execution Vulnerability FreeBSD Patches Eight Kernel Vulnerabilities UniFi CVE-2026-77537 (CVSS 10.0): Command Injection Flaws Hit 22 Ubiquiti Products The post Public Disclosure: Unpatched Log4j RCE Flaw in FilteredObjectInputStream, No CVE Assigned appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • CVE-2026-69836 (CVSS 10): Entra ID Remote Code Execution Flaw Exploited in the Wild Do Son
    CVE-2026-69836 is a CVSS 10 Entra ID remote code execution flaw exploited in the wild. Microsoft has fully mitigated it server-side. Related Posts: RDK-B WebUI Vulnerabilities Let Attackers Bypass Login CVE-2026-18963: Unauthenticated Account Takeover Flaw Hits Keycloak CVE-2026-67567 (CVSS 9.9): Red Hat Flaws Enable Privilege Escalation in ACM and FreeIPA The post CVE-2026-69836 (CVSS 10): Entra ID Remote Code Execution Flaw Exploited in the Wild appeared first on Daily CyberSecurity.
     
  • ✇Cybersecurity News
  • Spring GraphQL Vulnerabilities: Seven Flaws Patched, One Enables RCE Do Son
    Seven Spring GraphQL vulnerabilities were patched on August 20, including CVE-2026-59285, an unsafe deserialization flaw that can lead to remote code execution. Related Posts: RDK-B WebUI Vulnerabilities Let Attackers Bypass Login CVE-2026-18963: Unauthenticated Account Takeover Flaw Hits Keycloak CVE-2026-67567 (CVSS 9.9): Red Hat Flaws Enable Privilege Escalation in ACM and FreeIPA The post Spring GraphQL Vulnerabilities: Seven Flaws Patched, One Enables RCE appeared first on Daily CyberSec
     
  • ✇Cybersecurity News
  • CVE-2026-76404: Critical Remote Code Execution Hits Splunk MCP Server App (CVSS 9.1) Do Son
    Splunk patches CVE-2026-76404, a critical remote code execution flaw in the MCP Server app, plus 16 more bugs across its apps and add-ons. Related Posts: CVE-2026-47301: PoC Exploit Achieves SYSTEM-Level Code Execution in SCCM CVE-2026-66780 (CVSS 9.9): MITM Flaw Hits Red Hat ACM CVE-2026-76310, CVE-2026-76311, CVE-2026-76312: Splunk Embedded Report Flaws (CVSS 9.4) Affect System Integrity The post CVE-2026-76404: Critical Remote Code Execution Hits Splunk MCP Server App (CVSS 9.1) appeared f
     
  • ✇Cybersecurity News
  • PoC Releases for CVE-2026-63077: TeamCity RCE Exploited in the Wild Do Son
    CVE-2026-63077, an unauthenticated RCE in JetBrains TeamCity, is exploited in the wild. PoC exploit code and full details are now public. Related Posts: CVE-2026-27912: PoC Released for SYSTEM Privilege Flaw CVE-2026-58231 (CVSS 10.0) and Code Injection RCE Flaws Top SAP August 2026 Patch Day Windows PnP Attack Chain Turns a USB Plug Into SYSTEM: Details and PoC Now Public The post PoC Releases for CVE-2026-63077: TeamCity RCE Exploited in the Wild appeared first on Daily CyberSecurity.
     
❌
❌