24h | 7d | 30d

Overview

  • WordPress
  • WordPress

07 Aug 2026
Published
07 Aug 2026
Updated

CVSS v4.0
HIGH (8.9)
EPSS
0.77%

KEV

Description

WordPress is vulnerable to a pre-auth reflected XSS vulnerability on the login screen. Via a specially crafted malicious third-party website hosted by an attacker, it is possible for this to be escalated to an RCE vulnerability with conditions outside of the attackers control. This requires successful social engineering of and explicit interaction by the target victim. This issue affects all versions of WordPress. Version 7.0.3 has been released, containing a fix for the vulnerability, and as a courtesy to users on older branches the fix has been backported to all branches back to 4.7. Discovered and responsibly disclosed by [the team at pwn.ai](https://pwn.ai/).

Statistics

  • 5 Posts
  • 5 Interactions

Last activity: 5 hours ago

Fediverse

Profile picture fallback

WordPress RCE. Every version ever released (except the latest, 7.0.3). 500+ million sites. 43% of the Internet-facing sites. Hacker's paradise.

"XSS2Shell: WordPress Preauth XSS to RCE Chain (CVE-2026-64638)":

pwn.ai/blog/xss2shell

  • 2
  • 2
  • 0
  • 14h ago
Profile picture fallback

「WordPressの事前認証における新たなXSS脆弱性によりPHPコードの実行につながる可能性あり - 早急に修正を! 」: #TheHackerNews

「WordPressは、ログイン画面に存在する、認証前のリフレクテッドクロスサイトスクリプティング(XSS)の脆弱性を修正しました。この脆弱性は、コンテンツ管理システムのすべてのバージョンに影響を与えます。pwn.aiは、ログインした管理者が攻撃者によって制御されたページを操作する際に、この脆弱性がサーバー上でPHPコードの実行に連鎖的に繋がる仕組みを実証しました。

CVE-2026-64638 (CVSSスコア:8.9)として追跡されている この深刻な脆弱性は、攻撃者に特別な権限を必要としません。 」

thehackernews.com/2026/08/new-

#prattohome

  • 0
  • 0
  • 0
  • 21h ago
Profile picture fallback

En las últimas 24 horas, la seguridad informática enfrenta una severa vulnerabilidad en WordPress que permite ejecución remota de código, un retroceso en la confianza hacia plataformas de bug bounty como HackerOne, fallos frecuentes en parches generados por IA, descubrimientos avanzados de OpenAI para proteger sistemas críticos, y una brecha que expuso datos de 3.8 millones en el sector salud, mientras Cloudflare y nuevas herramientas IA mejoran la detección y análisis de amenazas. Descubre estos y más detalles en el siguiente listado de noticias sobre seguridad informática:

🗞️ ÚLTIMAS NOTICIAS EN SEGURIDAD INFORMÁTICA 🔒
====| 🔥 LO QUE DEBES SABER HOY 08/08/26 📆 |====

🔓 ¿QUÉ PASÓ CON HACKERONE?

La plataforma líder mundial en programas de recompensas por errores enfrentó un declive marcado tras su rápido ascenso, reflejando los desafíos en la sostenibilidad y confianza dentro del ecosistema de bug bounty. Entender esta historia es clave para evaluar la evolución de la seguridad colaborativa. Conoce más detalles sobre el devenir de HackerOne aquí 👉 djar.co/rh5IIs

💥 XSS2SHELL: CADENA DE XSS A RCE PREAUTENTICACIÓN EN WORDPRESS (CVE-2026-64638)

Una grave vulnerabilidad preautenticación en WordPress permite a atacantes remotos ejecutar código malicioso usando un ataque encadenado de Cross-Site Scripting a Remote Code Execution a través del formulario de login. Este fallo representa un riesgo crítico para millones de sitios, subrayando la necesidad urgente de actualizar y reforzar la seguridad de las plataformas web. Protege tu WordPress ahora revisando esta vulnerabilidad 👉 djar.co/LH68

🛡 RESPONDIENDO A LA NUEVA FRONTERA DE CAPACIDADES CIBERCRÍTICAS

OpenAI publica investigaciones preliminares sobre ciberseguridad en su proyecto Astra, detallando medidas avanzadas para fortalecer controles y salvaguardas frente a amenazas emergentes. Este enfoque proactivo es fundamental para anticipar y mitigar riesgos en inteligencia artificial y sistemas críticos. Infórmate sobre estas estrategias de defensa avanzada 👉 djar.co/VgIo

⚠️ PARCHEOS GENERADOS POR IA FALLAN LA MITAD DE LAS VECES

Un estudio exhaustivo de más de 6,000 parches automáticos revela que las soluciones generadas por inteligencia artificial no solo fallan frecuentemente, sino que pueden introducir nuevos errores, romper funcionalidades existentes y crear vectores para evasión de seguridad. Este hallazgo alerta sobre la dependencia excesiva en IA para mantenimiento crítico de software. Descubre los detalles del estudio y sus implicaciones 👉 djar.co/83x3J

🤖 COMPORTAMIENTOS BUENOS Y MALOS EN EL INTERNET AGÉNTICO

Cloudflare evalúa cómo distintos bots y agentes actúan en la red, diferenciando entre patrones benignos y maliciosos. Con sistemas como BotBase y Precursor, se implementan análisis continuos para mitigar amenazas automáticamente, mejorando la seguridad en el ecosistema digital. Aprende cómo se monitorizan y controlan estas actividades aquí 👉 djar.co/9ubDQ

📊 RADAR RESEARCHER: HERRAMIENTA DE IA PARA EXPLORAR DATOS DE INTERNET EN LENGUAJE SENCILLO

Una nueva herramienta impulsada por inteligencia artificial permite a usuarios explorar tendencias globales y datos de tráfico en internet usando lenguaje natural, transformando consultas complejas en gráficos interactivos fáciles de interpretar. Esta innovación facilita el análisis y la toma de decisiones informadas para profesionales de seguridad y tecnología. Prueba Radar Researcher y expande tu capacidad analítica 👉 djar.co/xeu6

🚨 BRECHA DE DATOS EN UNLIMITED TECHNOLOGY SYSTEMS AFECTA A 3.8 MILLONES

Una significativa brecha de seguridad en la empresa de software para salud Unlimited Technology Systems expuso datos personales de más de 3.8 millones de personas en octubre de 2025. Este incidente resalta la vulnerabilidad crítica en el sector salud y la urgencia de fortalecer protocolos de protección de datos sensibles. Infórmate sobre el alcance y recomendaciones tras la brecha 👉 djar.co/IA7842

  • 0
  • 0
  • 0
  • 17h ago

Bluesky

Profile picture fallback
WordPress fixes CVE-2026-64638, a pre-auth login XSS affecting every version, with a demonstrated path to PHP execution under specific conditions.
  • 0
  • 1
  • 0
  • 8h ago
Profile picture fallback
WordPress XSS2Shell (CVE-2026-64638) affects core login pages through 7.0.2, enabling reflected pre-auth XSS that can be chained to PHP code execution under specific conditions. #WordPress #CVE2026-64638 #Italy
  • 0
  • 0
  • 0
  • 5h ago

Overview

  • Pending

Pending
Published
Pending
Updated

CVSS
Pending
EPSS
Pending

KEV

Description

This candidate has been reserved by a CVE Numbering Authority (CNA). This record will be updated by the assigning CNA once details are available.

Statistics

  • 1 Post
  • 33 Interactions

Last activity: 9 hours ago

Fediverse

Profile picture fallback

Welp. My Forgejo instance got popped by CVE-2026-60004. Hooray for RCE 🙃

My two screw-ups were
1. I pinned it to v13 "for stability" forever ago, then forgot about it.
2. I accidentally left sign-ups enabled.

Grabbed the seemingly obfuscated payload script from the attacker's server. Looks like it hits a different IP and grabs one of three different binaries depending on the victim's CPU architecture. You best believe I'm grabbing those too

Will probably write a blog post on what I find, but I'll at least post updates here, too

#Homelab #SelfHosted #PatchYourShit #Forgejo

  • 9
  • 24
  • 0
  • 9h ago

Overview

  • Cisco
  • Cisco Secure Endpoint

07 Aug 2026
Published
07 Aug 2026
Updated

CVSS v3.1
HIGH (7.5)
EPSS
0.36%

KEV

Description

A vulnerability in the zip archive parser of ClamAV could allow an unauthenticated, remote attacker to cause a DoS condition on an affected device. This vulnerability is due to improper boundary checks for content in zip files during scanning, which may result in an out-of-bounds write condition. An attacker could exploit this vulnerability by submitting a crafted zip file for scanning. A successful exploit could allow the attacker to cause the ClamAV scanning process to terminate, resulting in a DoS condition on the affected software.

Statistics

  • 2 Posts
  • 1 Interaction

Last activity: 14 hours ago

Fediverse

Profile picture fallback

CVE-2026-20337 - Memory corruption in ClamAV ZIP parsing, out-of-bounds write DoS. CVSS 7.5. Unpatched. Update or mitigate immediately. #CVE #Cisco #infosec

valtersit.com/cve/CVE-2026-203

  • 1
  • 0
  • 0
  • 14h ago
Profile picture fallback

Cisco disclosed seven ClamAV vulnerabilities that let a remote attacker crash scanning via crafted files. Details are public. Patch now.

securityonline.info/clamav-vul

  • 0
  • 0
  • 0
  • 20h ago

Overview

  • Linux
  • Linux

04 Aug 2026
Published
08 Aug 2026
Updated

CVSS v3.1
CRITICAL (9.8)
EPSS
0.19%

KEV

Description

In the Linux kernel, the following vulnerability has been resolved: sctp: don't free the ASCONF's own transport in DEL-IP processing sctp_process_asconf() caches the transport the ASCONF chunk is processed against in asconf->transport (== chunk->transport, set once in sctp_rcv()). For an ASCONF located through its Address Parameter by __sctp_rcv_asconf_lookup(), that cached transport corresponds to the Address Parameter, which need not be the packet's source address. sctp_process_asconf_param() rejects a DEL-IP for the packet source address (ADDIP D8, SCTP_ERROR_DEL_SRC_IP), but nothing protects asconf->transport. A single ASCONF can therefore carry, in order: [Address Parameter L] [DEL-IP L] [DEL-IP 0.0.0.0] where L differs from the source. The DEL-IP for L passes the D8 check and calls sctp_assoc_rm_peer() on the transport that asconf->transport still points at, freeing it (RCU-deferred). The following wildcard DEL-IP then reuses the now-dangling asconf->transport in sctp_assoc_set_primary() and sctp_assoc_del_nonprimary_peers(): set_primary() dereferences the freed transport (->ipaddr, ->state) and plants the dangling pointer into asoc->peer.primary_path / active_path, and del_nonprimary_peers(), keeping only the pointer that is no longer on the list, removes every real transport, leaving the association with a transport_count of 0 and primary_path/active_path pointing at freed memory. Reject a DEL-IP that targets the transport the ASCONF is being processed against, mirroring the existing source-address guard, so the wildcard branch can never reuse a freed transport.

Statistics

  • 2 Posts
  • 2 Interactions

Last activity: 3 hours ago

Fediverse

Profile picture fallback

「18年前のLinux SCTPの脆弱性により、ローカルユーザーがroot権限を取得し、コンテナから脱出できる可能性 」: #TheHackerNews

「LinuxのSCTPネットワークコードに存在する解放済みメモリ使用のバグを悪用すると、ホスト上で完全なroot権限を取得できる可能性がある。Tencentの研究者らは、このバグを利用してコンテナから脱出し、その下にあるマシンにアクセスしたと述べている。

この脆弱性は2008年から存在していました。修正版は既にリリースされており、8月3日にリリースされた安定版カーネル7.1.6、6.18.42、6.12.101、6.6.148で修正されています。SCTP接続可能な古いカーネルを使用しているユーザーはアップデートしてください。

CVE-2026-64564 として追跡され 、 発見者によってSCTPhantom と名付けられたこの脆弱性は、カーネルCVEチームが割り当てた2日後の8月6日に公表された。 」

thehackernews.com/2026/08/18-y

#prattohome

  • 0
  • 1
  • 0
  • 20h ago

Bluesky

Profile picture fallback
Linux SCTP flaw CVE-2026-64564 dates back to 2008 and Tencent researchers say it could escape containers and gain host root.
  • 0
  • 1
  • 0
  • 3h ago

Overview

  • Apple
  • macOS

06 Aug 2026
Published
07 Aug 2026
Updated

CVSS
Pending
EPSS
0.30%

KEV

Description

An authentication issue was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.9, macOS Sonoma 14.8.9, macOS Tahoe 26.6.1. An attacker on the network may be able to authenticate to Screen Sharing without valid credentials.

Statistics

  • 2 Posts
  • 1 Interaction

Last activity: 6 hours ago

Fediverse

Profile picture fallback

Whoa, macOS Sequoia 15.7.9 changes:

> An attacker on the network may be able to authenticate to Screen Sharing without valid credentials

xcancel.com/calif_io/status/20

> If Screen Sharing is enabled, any network attacker can exploit the bug to log in as any account, without knowing the password.

Good thing it requires screen sharing to be enabled though.

CVE-2026-65400

  • 0
  • 1
  • 0
  • 6h ago
Profile picture fallback

CVE-2026-65400: macOS Screen Sharing Authentication Bypass Can Lead to Root-Level Remote Access

CVE-2026-65400 affects macOS Screen Sharing. Learn how the authentication flaw works, affected versions, exploitation research, detection etc.

thecybersecguru.com/news/cve-2

  • 0
  • 0
  • 0
  • 11h ago

Overview

  • brix
  • crypto-js

07 Aug 2026
Published
08 Aug 2026
Updated

CVSS v3.1
CRITICAL (9.0)
EPSS
0.32%

KEV

Description

crypto-js is a JavaScript library of crypto standards. Versions of crypto-js prior to 4.0.0 generate randomness in CryptoJS.lib.WordArray.random() using a custom variation of the Multiply-With-Carry pseudorandom number generator, seeded from Math.random(), instead of a cryptographically secure source. This generator was introduced in version 3.1.2-4 and remained present in nearly every 3.x release. Nominal requests for 128 or 256 bits of entropy through this function produce effective search spaces of approximately 2 to the 39th and 2 to the 47th possibilities, small enough to enumerate on commodity hardware. Downstream wallet applications that used CryptoJS.lib.WordArray.random() as the entropy source for BIP39 recovery phrases are affected, and an attacker who enumerates the reduced output space can recover the resulting private keys and control the associated funds. This issue is fixed in version 4.0.0.

Statistics

  • 2 Posts

Last activity: 10 hours ago

Fediverse

Profile picture fallback

CVE-2026-71851 (CRITICAL, CVSS 9): brix crypto-js <4.0.0 uses weak RNG in WordArray.random(), risking private key recovery in wallet apps using BIP39. Upgrade to 4.0.0+ now. radar.offseq.com/threat/cve-20

  • 0
  • 0
  • 0
  • 23h ago
Profile picture fallback

CVE-2026-71851 - Critical RCE in crypto-js <4.0.0. Weak PRNG seeded from Math.random() breaks entropy, enabling key recovery. CVSS 9.0. Patch now. #CVE #infosec #crypto

valtersit.com/cve/CVE-2026-718

  • 0
  • 0
  • 0
  • 10h ago

Overview

  • Linux
  • Linux

29 Jul 2026
Published
05 Aug 2026
Updated

CVSS v3.1
HIGH (7.8)
EPSS
0.12%

KEV

Description

In the Linux kernel, the following vulnerability has been resolved: posix-cpu-timers: Prevent UAF caused by non-leader exec() race Wongi and Jungwoo decoded and reported a non-leader exec() related race which can result in an UAF: sys_timer_delete() exec() posix_cpu_timer_del() // Observes old leader p = pid_task(pid, pid_type); de_thread() switch_leader(); release_task(old_leader) __exit_signal(old_leader) sighand = lock(old_leader, sighand); posix_cpu_timers*_exit(); sighand = lock_task_sighand(p) unhash_task(old_leader); sh = lock(p, sighand) old_leader->sighand = NULL; unlock(sighand); (p->sighand == NULL) unlock(sh) return NULL; // Returns without action if(!sighand) return 0; free_posix_timer(); This is "harmless" unless the deleted timer was armed and enqueued in p->signal because on exec() a TGID targeted timer is inherited. As sys_timer_delete() freed the underlying posix timer object run_posix_cpu_timers() or any timerqueue related add/delete operations on other timers will access the freed object's timerqueue node, which results in an UAF. There is a similar problem vs. posix_cpu_timer_set(). For regular posix timers it just transiently returns -ESRCH to user space, but for the use case in do_cpu_nanosleep() it's the same UAF just that the k_itimer is allocated on the stack. Also posix_cpu_timer_rearm() fails to rearm the timer, which means it stops to expire. While debating solutions Frederic pointed out another problem: posix_cpu_timer_del(tmr) __exit_signal(p) posix_cpu_timers*_exit(p); unhash_task(p); p->sighand = NULL; sh = lock_task_sighand(p) sighand = p->sighand; if (!sighand) return NULL; lock(sighand); if (!sh) WARN_ON_ONCE(timer_queued(tmr)); On weakly ordered architectures it is not guaranteed that posix_cpu_timer_del() will observe the stores in posix_cpu_timers*_exit() when p->sighand is observed as NULL, which means the WARN() can be a false positive. Solve these issues by: 1) Changing the store in __exit_signal() to smp_store_release(). 2) Adding a smp_acquire__after_ctrl_dep() into the !sighand path of lock_task_sighand(). 3) Creating a helper function for looking up the task and locking sighand which does not return when sighand == NULL. Instead it retries the task lookup and only if that fails it gives up. 4) Using that helper in the three affected functions. #1/#2 ensures that the reader side which observes sighand == NULL also observes all preceeding stores, i.e. the stores in posix_cpu_timers*_exit() and the ones in unhash_task(). #3 ensures that the above described non-leader exec() situation is handled gracefully. When the task lookup returns the old leader, but sighand == NULL then it retries. In the non-leader exec() case the subsequent task lookup will observe the new leader due to #1/#2. In normal exit() scenarios the subsequent lookup fails. When the task lookup fails, the function also checks whether the timer is still enqueued and issues a warning if that's the case. Unfortunately there is nothing which can be done about it, but as the task is already not longer visible the timer should not be accessed anymore. This check also requires memory ordering, which is not provided when the first lookup fails. To achieve that the check is preceeded by a smp_rmb() which pairs with the smp_wmb() in write_seqlock() in __exit_signal(). That ensures that the stores in posix_cpu_timers*_exit() are visible. The history of the non-leader exec() issue goes back to the early days of posix CPU timers, which stored a pointer to the group leader task in the timer. That obviously fails when a non-leader exec() switches the leader. commit e0a70217107e ("posix-cpu-timers: workaround to suppress the problems with mt exec") added a temporary workaround for that in 2010 which surv ---truncated---

Statistics

  • 1 Post
  • 2 Interactions

Last activity: 16 hours ago

Fediverse

Profile picture fallback

🚨 Tails has released an emergency security update: Tails 7.10.1, patching critical flaws that could enable privilege escalation and potentially deanonymize users. It fixes CVE-2026-64560 (Linux kernel) and multiple Expat XML library issues. 🔐➡️ cyberinsider.com/tails-emergen #Tails #Tor #Cybersecurity #Privacy #SecurityUpdate

  • 2
  • 0
  • 0
  • 16h ago

Overview

  • Oracle Corporation
  • Oracle WebLogic Server

21 Jul 2026
Published
25 Jul 2026
Updated

CVSS v3.1
CRITICAL (9.9)
EPSS
0.49%

KEV

Description

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows low privileged attacker with network access via SAML to compromise Oracle WebLogic Server. While the vulnerability is in Oracle WebLogic Server, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server. CVSS 3.1 Base Score 9.9 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H).

Statistics

  • 1 Post
  • 1 Interaction

Last activity: 14 hours ago

Bluesky

Profile picture fallback
Interesting Git repos of the week: Detection: * https://github.com/Yamato-Security/WELA - improve your Windows logging Bugs: * https://github.com/timb-machine-mirrors/imbas007-POC-CVE-2026-60206 - popping WebLogic via SAML Exploitation: * https://github.com/Mrnmap/RedTeam - a nice list of […]
  • 1
  • 0
  • 0
  • 14h ago

Overview

  • home-assistant
  • core

07 Aug 2026
Published
07 Aug 2026
Updated

CVSS v3.1
HIGH (7.1)
EPSS
0.11%

KEV

Description

Home Assistant is open source home automation software focused on local control and privacy. Prior to 2026.5.3, the Companion app treats tag links (NFC or QR) delivered through an OS-level routing mechanism as if they were physically scanned, without validating the calling app or prompting the user. As a result, any untrusted app on the device can forward an arbitrary tag to Home Assistant, causing it to execute the associated automation as though a legitimate user had scanned an authorized tag. This allows silent, unattended automation execution by untrusted local callers. This issue is fixed in version 2026.8.1.

Statistics

  • 1 Post
  • 1 Interaction

Last activity: 17 hours ago

Fediverse

Profile picture fallback

CVE-2026-66060 – High severity flaw in Home Assistant. Companion app executes NFC/QR tag automations without caller validation, letting malicious apps trigger actions. CVSS 7.1. Update to 2026.5.3+ immediately. #CVE #HomeAssistant #infosec

valtersit.com/cve/CVE-2026-660

  • 1
  • 0
  • 0
  • 17h ago

Overview

  • V-Secure
  • Jingyun Antivirus

07 Aug 2026
Published
07 Aug 2026
Updated

CVSS v4.0
HIGH (8.5)
EPSS
0.11%

KEV

Description

A vulnerability has been found in V-Secure Jingyun Antivirus 2.4.2.39. The affected element is an unknown function in the library ZyArk.sys of the component Kernel Driver. The manipulation leads to improper access controls. The attack needs to be performed locally. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Statistics

  • 1 Post

Last activity: 15 hours ago

Fediverse

Profile picture fallback

CVE-2026-19195 - Local privilege escalation in V-Secure Jingyun Antivirus via ZyArk.sys improper access controls. CVSS 7.8. Exploit public, no patch. Update or isolate now. #CVE #infosec #cybersecurity

valtersit.com/cve/CVE-2026-191

  • 0
  • 0
  • 0
  • 15h ago
Showing 1 to 10 of 31 CVEs