← Home
#active-exploitation
10 stories tagged.
CVE-2026-42208: The SQL Injection That Opens Your Entire AI Stack — LiteLLM's CISA KEV Crisis
9 min · 0 sources
The Device Manager Is Compromised: Ivanti EPMM's Five-CVE Zero-Day Bundle and the January Credential Domino
10 min · 0 sources
The Master Key to 1.5 Million Servers: CVE-2026-41940 and the cPanel CRLF Authentication Bypass
10 min · 0 sources
Your Firewall Is the Exploit: CVE-2026-0300 Grants Root RCE on Palo Alto PA-Series via Captive Portal Buffer Overflow — No Patch Yet
10 min · 0 sources
CISA KEV analysis: what gets actively exploited and why
1 min · 1 sources
The Patch That Made Things Worse: CVE-2026-35616's Textbook Header-Spoofing Bypass Turned Your Endpoint Security Manager Into the Attacker's Pivot
9 min · 0 sources
The Network Spine Is the Weapon: Cisco SD-WAN's 7-CVE Kill Chain and the Nation-State Actor Behind It
12 min · 0 sources
Fortinet's Endpoint Manager Is an Open Door: The Double Zero-Day Assault on FortiClient EMS (CVE-2026-35616 + CVE-2026-21643)
10 min · 0 sources
CISA adds CVE-2024-57728 (SimpleHelp) to Known Exploited Vulnerabilities
4 min · 3 sources
CISA: CVE-2024-20439 added to Known Exploited Vulnerabilities — Cisco Smart Licensing Utility
4 min · 3 sources