24h | 7d | 30d

Overview

  • Citrix NetScaler
  • ADC

27 Sep 2026
Published
28 Sep 2026
Updated

CVSS v4.0
CRITICAL (9.5)
EPSS
1.30%

Description

Vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23 leading to Remote Code Execution or Denial of Service

Statistics

  • 22 Posts
  • 6 Interactions

Last activity: 4 hours ago

Fediverse

Profile picture fallback

Detalles del exploit de Citrix NetScaler CVE-2026-88772 revelan ruta de ejecución de shellcode sin autenticación

blog.elhacker.net/2026/09/deta

  • 0
  • 1
  • 0
  • 9h ago
Profile picture fallback

"Hackers exploit Citrix NetScaler zero-day to deploy web shells"

"[...] Cybersecurity firms say attackers exploited the Citrix NetScaler CVE-2026-88772 zero-day to deploy custom web shells and tunneling malware, gain root access, steal credentials, and spread into internal networks."

bleepingcomputer.com/news/secu

  • 0
  • 0
  • 0
  • 22h ago
Profile picture fallback
Mandiant and GTIG detail active exploitation of a Citrix NetScaler zero-day, deploying custom web shells WHIPSHOT and SLAPSHOT for root access. Mandiant and Google Threat Intelligence Group caught active exploitation of a zero-day in Citrix NetScaler ADC and Gateway appliances in late September 2026. The bug, tracked as CVE-2026-88772 (CVSS score of 9.5), has been […]
WHIPSHOT and SLAPSHOT: the tools behind an active Citrix NetScaler campaign
  • 0
  • 0
  • 0
  • 13h ago
Profile picture fallback

Two Citrix NetScaler zero-days (CVE-2026-88772/88771) gave attackers pre-auth root on the box that fronts your whole network. GTIG traced exploitation to early September, weeks before the patch existed.

Once inside, their C2 leaves from your own public IP. No strange domain, no foreign address to block. The call is coming from inside the house.

Reputation Radar #13:
reput.io/blog/reputation-radar

  • 0
  • 0
  • 0
  • 5h ago
Profile picture fallback

Critical Citrix NetScaler RCE (CVE-2026-88772) exploited in the wild: a deep dive into the DTLS buffer overflow

Citrix NetScaler vulnerability, NetScaler RCE, Citrix zero-day, DTLS buffer overflow, CVE-2026-88771, NetScaler Gateway exploit, Citrix security advisory

thecybersecguru.com/news/citri

  • 0
  • 0
  • 0
  • 12h ago
Profile picture fallback

📰 Citrix Zero-Days and Oracle PeopleSoft Flaw Under Active Exploit

🚨 CRITICAL THREAT: Two Citrix zero-days (CVE-2026-88771, CVE-2026-88772) and an Oracle PeopleSoft flaw (CVE-2026-35273) are under active exploitation for RCE. CISA KEV updated. Patch immediately! #CyberSecurity #ZeroDay #CVE #PatchNow

🔗 cyber.netsecops.io/articles/ci

  • 0
  • 0
  • 0
  • 6h ago

Bluesky

Profile picture fallback
Suspected state-sponsored hackers exploited NetScaler zero-day since early September (CVE-2026-88772) 📖 Read more: www.helpnetsecurity.com/2026/09/30/c... #cybersecurity #cybersecuritynews #Europe #USA #education #financialindustry #telecommunications @mandiant.com
  • 0
  • 1
  • 0
  • 8h ago
Profile picture fallback
Here We Go Again (Citrix NetScaler DTLS Preauth Memory Overflow CVE-2026-88772) https://packetstorm.news/news/view/44294 #news
  • 0
  • 0
  • 0
  • 22h ago
Profile picture fallback
CVE-2026-88772 in Citrix NetScaler ADC/Gateway DTLS handling enables remote code execution or denial-of-service via a memory buffer overflow.
  • 0
  • 0
  • 0
  • 14h ago
Profile picture fallback
CVE-2026-88772 hits Citrix NetScaler ADC and Gateway via a DTLS memory overflow in NSPPE, enabling pre-auth RCE or DoS. Active exploitation reported. #CitrixNetScaler #NSPPE #CVE202688772
  • 0
  • 0
  • 0
  • 11h ago
Profile picture fallback
Threat actors exploited CVE-2026-88772 in Citrix NetScaler ADC/Gateway to gain root access, deploy PHP web shells and tunneling tools, and steal credentials via internal reconnaissance.
  • 0
  • 0
  • 0
  • 11h ago
Profile picture fallback
Citrix NetScaler CVE-2026-88772 Exploit Details Show Pre-Auth Path to Shellcode Execution #cybersecurity #hacking #news #infosec #security #technology #privacy thehackernews.com/20...
  • 0
  • 0
  • 0
  • 9h ago
Profile picture fallback
A Citrix NetScaler zero-day (CVE-2026-88772, pre-auth DTLS memory overflow) was exploited for at least three weeks before detection. WatchTowr's writeup includes IOCs, and defenders are hunting for indicators like "heartbeat" strings and suspicious inbound traffic.
  • 0
  • 0
  • 0
  • 7h ago
Profile picture fallback
Why check now? Google/Mandiant report active CVE-2026-88772 exploitation and likely impact across several sectors. Unit 42's hunts are general guidance, not observed campaign fingerprints.
  • 0
  • 0
  • 0
  • 6h ago
Profile picture fallback
Citrix NetScaler zero-days CVE-2026-88771 and CVE-2026-88772 were used to deploy web shells, tunneling malware, and steal credentials in attacks across North America and Europe. #Citrix #NorthAmerica #Europe
  • 0
  • 1
  • 0
  • 23h ago
Profile picture fallback
Mandiant and GTIG report active exploitation of Citrix NetScaler ADC/Gateway via CVE-2026-88772 and CVE-2026-88771, with custom tools, root access, persistence, and hidden C2 in HTTP headers. #CitrixNetScaler #WHIPSHOT #SLAPSHOT
  • 0
  • 1
  • 0
  • 16h ago
Profile picture fallback
Attacks exploiting Citrix NetScaler zero-days CVE-2026-88771 and CVE-2026-88772 enable remote code execution, root access, web-shell deployment, and internal network compromise.
  • 0
  • 1
  • 0
  • 8h ago
Profile picture fallback
Citrix patched two critical NetScaler zero-days, CVE-2026-88771 and CVE-2026-88772, after weeks-long attacks used for unauthenticated RCE, root access, and web shells. Over 100 victims may be affected. #NetScaler #Mandiant #Europe
  • 0
  • 1
  • 0
  • 4h ago
Profile picture fallback
The latest update for #Sophos includes "Jev's Paradox: The hidden cost of cheap #AI decisions" and "Citrix NetScaler vulnerabilities (CVE-2026-88771, CVE-2026-88772) in active exploitation". #cybersecurity #antivirus #malware https://opsmtrs.com/487u2e2
  • 0
  • 0
  • 0
  • 21h ago
Profile picture fallback
> NetScaler ADC/Gatewayの脆弱性CVE-2026-88771、CVE-2026-88772の悪用についてまとめてみた https://piyolog.hatenadiary.jp/entry/2026/09/30/080115
  • 0
  • 0
  • 2
  • 17h ago

Overview

  • Apple
  • iOS and iPadOS

28 Sep 2026
Published
30 Sep 2026
Updated

CVSS
Pending
EPSS
1.24%

Description

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and iPadOS 26.7.1, macOS Sequoia 15.8.1, macOS Tahoe 26.7.1. Processing a maliciously crafted file may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 27.

Statistics

  • 9 Posts
  • 2 Interactions

Last activity: 1 hour ago

Fediverse

Profile picture fallback

Apple a corrigé une faille CoreGraphics exploitée pour cibler des utilisateurs d’iPhone (CVE-2026-86950) it-connect.fr/apple-cve-2026-8 #ActuCybersécurité #Cybersécurité #Vulnérabilité #Apple

  • 1
  • 0
  • 0
  • 11h ago
Profile picture fallback

Apple released the urgent iOS 26.7.1 update to patch a critical zero-day vulnerability (CVE-2026-86950) in CoreGraphics, preventing arbitrary code execution.

dailytechnow.com/apple-patches

  • 1
  • 0
  • 0
  • 1h ago
Profile picture fallback

Apple squashes zero-day bug exploited in ”extremely sophisticated” attack (CVE-2026-86950) – Help Net Security macken.xyz/2026/09/apple-squas

  • 0
  • 0
  • 0
  • 23h ago
Profile picture fallback
U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Apple Multiple Products flaw to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added an Apple Multiple Products flaw, tracked as CVE-2026-86950 (CVSS score of 8.8), to its Known Exploited Vulnerabilities (KEV) catalog. This week, Apple has released security updates for iOS, iPadOS […]
U.S. CISA adds Apple Multiple Products flaw to its Known Exploited Vulnerabilities catalog
  • 0
  • 0
  • 0
  • 13h ago
Profile picture fallback

Apple Emergency Patch for iOS 26, macOS26, macOS15 (CVE-2026-86950), (Mon, Sep 28th)
#infosec
isc.sans.edu/diary/rss/33376

  • 0
  • 0
  • 0
  • 1h ago
Profile picture fallback

(CISA TS+SOC) CVE-2026-86950 – Apple CoreGraphics Out-of-Bounds Write Briefing

Active exploitation of CVE-2026-88650 [CVE-2026-86950] in Apple CoreGraphics requires immediate patch deployment and forensic triage. Review integrated TSUITE + SOC intelligence assets....

thecybermind.co/2qk4

  • 0
  • 0
  • 0
  • 14h ago

Bluesky

Profile picture fallback
Appleが、iOS 27以前で標的型攻撃に悪用された脆弱性 CVE-2026-86950を修正 rocket-boys.co.jp/security-mea... #セキュリティ対策Lab #security #securitynews #セキュリティ #セキュリティニュース
  • 0
  • 0
  • 0
  • 20h ago
Profile picture fallback
🤔 Votre iPhone peut-il être ciblé par un fichier piégé ? Apple a corrigé une faille CoreGraphics exploitée pour cibler des utilisateurs d’iPhone (CVE-2026-86950) Voici ce qu'il faut retenir 👇 www.it-connect.fr/apple-cve-20... #Cybersécurité #Apple #CVE
  • 0
  • 0
  • 0
  • 12h ago
Profile picture fallback
A zero-click CoreGraphics flaw (CVE-2026-86950) enables arbitrary code execution from malicious files, prompting emergency updates across iOS 26, iPadOS 26, and macOS Sequoia.
  • 0
  • 0
  • 0
  • 6h ago

Overview

  • Cisco
  • Cisco Catalyst SD-WAN Manager

30 Sep 2026
Published
30 Sep 2026
Updated

CVSS v3.1
CRITICAL (9.8)
EPSS
Pending

Description

A vulnerability in the API session-based authentication management of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker to access an affected system with privileges of the admin user. This vulnerability is due to improper handling of URI encoding in an HTTP request, which allows the request to bypass an authentication rule that is intended to restrict access to a specific API endpoint. An attacker could exploit this vulnerability by sending a crafted HTTP request to the API of the affected system. A successful exploit could allow the attacker to bypass authentication and gain access to the API as the admin user.

Statistics

  • 7 Posts
  • 15 Interactions

Last activity: Last hour

Fediverse

Profile picture fallback

🚨 Cisco warns critical SD-WAN Manager zero-day is actively exploited

CVE-2026-76504 is a critical authentication bypass affecting Cisco Catalyst SD-WAN Manager.

The flaw allows an unauthenticated remote attacker to send a crafted HTTP request that bypasses an API authentication rule and grants access with admin privileges.
⠀
The vulnerability carries a CVSS score of 9.8 and affects the product regardless of its configuration.

Cisco became aware of active exploitation in September after investigating a support case.
⠀
There are no workarounds. Administrators should install a fixed release immediately and investigate internet-facing systems for signs of compromise.

Source: bleepingcomputer.com/news/secu

  • 1
  • 3
  • 0
  • 2h ago
Profile picture fallback

Attackers exploit CVE-2026-76504, a 9.8 authentication bypass in Cisco SD-WAN Manager that grants admin API access. Patch now.

securityonline.info/cisco-sd-w

  • 0
  • 0
  • 0
  • 6h ago

Bluesky

Profile picture fallback
Cisco released security updates to address a critical zero-day in the Catalyst SD-WAN Manager (tracked as CVE-2026-76504) that attackers are actively exploiting to escalate to admin privileges.
  • 1
  • 0
  • 0
  • 6h ago
Profile picture fallback
CVE-2026-76504 lets unauthenticated attackers use Cisco Catalyst SD-WAN Manager’s API as admin via crafted URI encoding, requiring upgrades with no workaround.
  • 0
  • 0
  • 0
  • 5h ago
Profile picture fallback
Cisco patched CVE-2026-76504, a critical zero-day in Catalyst SD-WAN Manager actively exploited to gain admin access via crafted HTTP requests and auth bypass. #Cisco #SDWAN #ZeroDay
  • 0
  • 0
  • 0
  • 4h ago
Profile picture fallback
Cisco warns of active exploitation of CVE-2026-76504 in Catalyst SD-WAN Manager, a critical auth bypass that lets remote unauthenticated attackers access the API as admin. 3 hashtags: #Cisco #SDWAN #CVE202676504
  • 0
  • 0
  • 0
  • Last hour

Overview

  • Citrix NetScaler
  • ADC

27 Sep 2026
Published
29 Sep 2026
Updated

CVSS v4.0
CRITICAL (9.5)
EPSS
1.06%

Description

Improper input validation vulnerability in Citrix NetScaler ADC and Citrix NetScaler Gateway. This issue affects ADC: before 14.1-73.37, before 13.1-64.23, before 14.1-73.37 FIPS, and before 13.1.37.279 FIPS and NDcPP; Gateway: before 14.1-73.37 and before 13.1-64.23 leading to an unauthenticated attacker to execute arbitrary commands.

Statistics

  • 15 Posts
  • 9 Interactions

Last activity: 4 hours ago

Fediverse

Profile picture fallback

An adversary tried Citrix NetScaler CVE-2026-88771 against a GreyNoise Swarm participant sensor more than three days before public disclosure, and GreyNoise labeled it malicious within seconds, before any CVE-specific detection existed. New sources followed within a day.

Elsewhere, sources checked F5 BIG-IP for a newly listed KEV flaw in the week CISA set a three-day federal deadline, and adversaries attempted two CrushFTP flaws in back-to-back single-day bursts. Next.js bypass sources ran at least four times their late August daily level on a flaw outside KEV. Build the control on the request behavior.

Customers get the full weekly brief. Our public At The Edge one-pager is attached + greynoise.io/resources/at-the-

  • 1
  • 4
  • 0
  • 6h ago
Profile picture fallback

CERT-EU shares their insights on CVE-2026-88771 exploitation and provides threat hunting tips in different logs.

cert.europa.eu/blog/taking-exe

  • 0
  • 0
  • 0
  • 5h ago
Profile picture fallback

Critical Citrix NetScaler RCE (CVE-2026-88772) exploited in the wild: a deep dive into the DTLS buffer overflow

Citrix NetScaler vulnerability, NetScaler RCE, Citrix zero-day, DTLS buffer overflow, CVE-2026-88771, NetScaler Gateway exploit, Citrix security advisory

thecybersecguru.com/news/citri

  • 0
  • 0
  • 0
  • 12h ago
Profile picture fallback

📰 Citrix Zero-Days and Oracle PeopleSoft Flaw Under Active Exploit

🚨 CRITICAL THREAT: Two Citrix zero-days (CVE-2026-88771, CVE-2026-88772) and an Oracle PeopleSoft flaw (CVE-2026-35273) are under active exploitation for RCE. CISA KEV updated. Patch immediately! #CyberSecurity #ZeroDay #CVE #PatchNow

🔗 cyber.netsecops.io/articles/ci

  • 0
  • 0
  • 0
  • 6h ago

Bluesky

Profile picture fallback
Citrix NetScaler CVE-2026-88771 PoC Released as Exploitation Surges(Citrix NetScalerのCVE-2026-88771、PoC公開で攻撃拡大の懸念) #SecurityOnline (Sep 29) securityonline.info/citrix-netsc...
  • 0
  • 0
  • 0
  • 15h ago
Profile picture fallback
NetScaler zero-day exploitation escalates into mass attacks (CVE-2026-88771)(NetScalerゼロデイ攻撃が大規模攻撃へ拡大) #HelpNetSecurity (Sep 29) www.helpnetsecurity.com/2026/09/29/n...
  • 0
  • 0
  • 0
  • 15h ago
Profile picture fallback
Citrix NetScaler zero-days CVE-2026-88771 and CVE-2026-88772 were used to deploy web shells, tunneling malware, and steal credentials in attacks across North America and Europe. #Citrix #NorthAmerica #Europe
  • 0
  • 1
  • 0
  • 23h ago
Profile picture fallback
Mandiant and GTIG report active exploitation of Citrix NetScaler ADC/Gateway via CVE-2026-88772 and CVE-2026-88771, with custom tools, root access, persistence, and hidden C2 in HTTP headers. #CitrixNetScaler #WHIPSHOT #SLAPSHOT
  • 0
  • 1
  • 0
  • 16h ago
Profile picture fallback
Attacks exploiting Citrix NetScaler zero-days CVE-2026-88771 and CVE-2026-88772 enable remote code execution, root access, web-shell deployment, and internal network compromise.
  • 0
  • 1
  • 0
  • 8h ago
Profile picture fallback
Citrix patched two critical NetScaler zero-days, CVE-2026-88771 and CVE-2026-88772, after weeks-long attacks used for unauthenticated RCE, root access, and web shells. Over 100 victims may be affected. #NetScaler #Mandiant #Europe
  • 0
  • 1
  • 0
  • 4h ago
Profile picture fallback
The latest update for #Sophos includes "Jev's Paradox: The hidden cost of cheap #AI decisions" and "Citrix NetScaler vulnerabilities (CVE-2026-88771, CVE-2026-88772) in active exploitation". #cybersecurity #antivirus #malware https://opsmtrs.com/487u2e2
  • 0
  • 0
  • 0
  • 21h ago
Profile picture fallback
> NetScaler ADC/Gatewayの脆弱性CVE-2026-88771、CVE-2026-88772の悪用についてまとめてみた https://piyolog.hatenadiary.jp/entry/2026/09/30/080115
  • 0
  • 0
  • 2
  • 17h ago
Profile picture fallback
Critical Citrix NetScaler ADC and Gateway Vulnerabilities CVE-2026-88771 through CVE-2026-88778 #patchmanagement
  • 0
  • 0
  • 0
  • 6h ago

Overview

  • WatchGuard
  • Fireware OS

29 Sep 2026
Published
30 Sep 2026
Updated

CVSS v4.0
CRITICAL (9.2)
EPSS
0.33%

KEV

Description

A code injection vulnerability in WatchGuard Fireware OS's BOVPN Over TLS client configuration handling allows an attacker who controls the remote VPN server to execute arbitrary commands as root on the connecting Firebox.

Statistics

  • 7 Posts
  • 1 Interaction

Last activity: 1 hour ago

Fediverse

Profile picture fallback

Another one from Watch Guard.

A code injection vulnerability in WatchGuard Fireware OS's BOVPN Over TLS client configuration handling allows an attacker who controls the remote VPN server to execute arbitrary commands as root on the connecting Firebox.

psirt.watchguard.com/CVE-2026-

  • 0
  • 1
  • 0
  • 17h ago
Profile picture fallback

CVE-2026-86131: CRITICAL code injection in WatchGuard Fireware OS BOVPN Over TLS. Attackers controlling a VPN server can execute root commands on Firebox devices. Avoid untrusted VPNs until patched. radar.offseq.com/threat/a-code

  • 0
  • 0
  • 0
  • 19h ago
Profile picture fallback

WatchGuard patched 14 Fireware OS vulnerabilities, including CVSS 9.2 RCE flaw CVE-2026-86131 in BOVPN Over TLS. Update Firebox appliances now.

securityonline.info/watchguard

  • 0
  • 0
  • 0
  • 18h ago
Profile picture fallback

CRITICAL RCE (CVE-2026-86131) in WatchGuard Fireware OS enables root code execution via BOVPN over TLS. Multiple high-severity flaws also patched. No known in-the-wild attacks, but update ASAP. radar.offseq.com/threat/watchg

  • 0
  • 0
  • 0
  • 7h ago
Profile picture fallback
WatchGuard fixes 15 Fireware OS flaws, including a critical RCE bug that could give attackers root access to vulnerable Firebox appliances. WatchGuard has released security updates for Fireware OS that address 15 vulnerabilities, including a critical code injection flaw, tracked as CVE-2026-86131 (CVSS score of 9.2), that could allow an attacker to execute commands with […]
WatchGuard fixes critical Fireware OS flaw allowing remote code execution
  • 0
  • 0
  • 0
  • 1h ago

Bluesky

Profile picture fallback
WatchGuard released Fireware OS patches fixing 15 vulnerabilities, including a critical CVE-2026-86131 RCE that can grant root command execution via BOVPN over TLS.
  • 0
  • 0
  • 0
  • 7h ago
Profile picture fallback
WatchGuard fixed 15 Fireware OS flaws, including CVE-2026-86131, a critical code injection bug that could let a remote attacker run commands as root on Firebox appliances. #WatchGuard #FirewareOS #Firebox
  • 0
  • 0
  • 0
  • 3h ago

Overview

  • Zimbra
  • Collaboration

13 Aug 2026
Published
24 Aug 2026
Updated

CVSS v3.1
HIGH (8.9)
EPSS
11.74%

Description

A remote code execution vulnerability exists in Zimbra Collaboration (ZCS) before 10.1.20 when the optional zimbra-snmp package is installed and SNMP notifications are enabled. Due to improper sanitization of untrusted input during SNMP notification processing, an unauthenticated attacker can send specially crafted SMTP requests that may result in execution of arbitrary operating system commands as the Zimbra user.

Statistics

  • 4 Posts
  • 6 Interactions

Last activity: Last hour

Fediverse

Profile picture fallback

Zimbra CVE-2026-73570 lets one crafted email run code. Microsoft details the Zimbra command injection attacks: web shells, root access, and key theft.

securityonline.info/zimbra-cve

  • 1
  • 0
  • 0
  • 5h ago

Bluesky

Profile picture fallback
Microsoft Threat Intelligence identified and tracked exploitation of CVE-2026-73570, an unauthenticated OS command injection vulnerability affecting internet-facing mail servers that enabled compromise without authentication or user interaction. msft.it/63324aYk4n
  • 2
  • 3
  • 0
  • 4h ago
Profile picture fallback
An unauthenticated Zimbra flaw (CVE-2026-73570) enabled remote code execution, web shells, and mailbox theft; Microsoft and CERT Polska reported exploitation, patched in July 2026.
  • 0
  • 0
  • 0
  • 3h ago
Profile picture fallback
Attackers exploited Zimbra CVE-2026-73570 via crafted SMTP requests to drop web shells, steal mailbox and auth data, and move laterally using tools like Zimclient2 and AzCopy. #Zimbra #CVE-2026-73570 #CISA
  • 0
  • 0
  • 0
  • Last hour

Overview

  • TeamViewer
  • Full Client

29 Sep 2026
Published
30 Sep 2026
Updated

CVSS v3.1
HIGH (8.8)
EPSS
0.38%

KEV

Description

An improper access control vulnerability in TeamViewer Full Client, Host, and related affected modules on Windows, Linux, and macOS allows an authenticated remote attacker to bypass user-configured permission settings during session establishment. By modifying access control parameters for restricted features, an attacker can perform actions that were explicitly denied by the victim's configuration. This may result in unauthorized actions and potentially lead to remote code execution on the target system.

Statistics

  • 3 Posts
  • 2 Interactions

Last activity: 6 hours ago

Fediverse

Profile picture fallback

Update to 15.82 now. Five high-severity TeamViewer vulnerabilities include CVE-2026-92370, CVE-2026-19743 and CVE-2026-92368 in Full Client and Host.

securityonline.info/teamviewer

  • 1
  • 0
  • 0
  • 16h ago

Bluesky

Profile picture fallback
The highest-severity flaw is a remote session access control bypass (CVE-2026-92370) stemming from an improper access control weakness in TeamViewer Full Client and Host software for Windows, Linux, and macOS. www.bleepingcomputer.com/news/securit...
  • 1
  • 0
  • 0
  • 8h ago
Profile picture fallback
TeamViewer released urgent patches for high-severity flaws in Full Client and Host for Windows, Linux, and macOS, including access control bypass that could enable RCE. Update to version 15.82. #TeamViewer #CVE202692370 #Windows
  • 0
  • 0
  • 0
  • 6h ago

Overview

  • OpenSSL
  • OpenSSL

29 Sep 2026
Published
29 Sep 2026
Updated

CVSS
Pending
EPSS
0.39%

KEV

Description

Issue summary: The DTLS retransmission logic does not correctly handle a handshake message write that is suspended part-way through. The retransmitted message can be read past the message buffer and the retransmission overwrites the internal state the suspended write needs to resume correctly. Impact summary: The retransmitted message can disclose a heap memory to the peer as plaintext handshake data or cause a crash and a Denial of Service when the read reaches an unmapped memory region. CWE: CWE-125: Out-of-bounds Read Description: DTLS handshake messages can be written out in multiple fragments, and a write can suspend mid-message (returning WANT_WRITE) if the underlying transport temporarily cannot accept more data. While such a write is suspended, the DTLS retransmission timer may independently fire and ask the retransmission logic to resend an earlier, already-acknowledged-as-sent message from its retransmit queue. The retransmission logic reused the same internal buffer and position tracking as the message that was still being written, without resetting the position back to the start of the message being retransmitted. As a result the retransmission was read starting from wherever the suspended write had left off, producing a mislabelled message whose body was leftover bytes from the other, larger message still in flight - content that was never meant to be sent at that point, and which could run past the end of the allocated buffer. Separately, even when the retransmission is positioned correctly, allowing it to run to completion while another write is suspended overwrites the same shared bookkeeping that the suspended write depends on to resume. When the application later resumes the suspended write (via a subsequent SSL_read(), SSL_write(), SSL_accept(), or SSL_connect() call), it finds that bookkeeping in a state inconsistent with the message and aborts the process in a debugging build. The fix resets the retransmission's read position to the start of the message before resending, and skips retransmission entirely whenever a handshake write is still suspended, deferring to the next call that resumes it instead. FIPS impact: no The affected code is outside the FIPS module boundary.

Statistics

  • 3 Posts
  • 2 Interactions

Last activity: 7 hours ago

Bluesky

Profile picture fallback
A DTLS resend during paused handshake transmission can send wrongly labeled data, leaking heap memory or crashing programs via CVE-2026-84782.
  • 1
  • 0
  • 0
  • 11h ago
Profile picture fallback
OpenSSL’s CVE-2026-84782 DTLS flaw can leak heap memory across a connection or crash programs. Fixes are public for OpenSSL 4.0.3, […]
  • 0
  • 0
  • 0
  • 7h ago
Profile picture fallback
OpenSSLの脆弱性(High: CVE-2026-84782, Moderate: CVE-2026-84783, Low: CVE-2026-35189複数)と4.0.3, 3.6.5, 3.5.9, 3.4.8, 3.0.23, 1.1.1zj, 1.0.2zsリリース #sios_tech #security #vulnerability #セキュリティ #脆弱性 #ssh #openssl #ssl security.sios.jp/vulnerabilit...
  • 1
  • 0
  • 0
  • 14h ago

Overview

  • WordPress
  • WordPress

22 Sep 2026
Published
26 Sep 2026
Updated

CVSS
Pending
EPSS
19.76%

Description

An unauthenticated attacker can make `get_page_template()` page-template resolution include a chosen readable local `.php` file outside the active theme directories. If relevant pre-conditions for both the server and the active theme are met, this can lead to RCE.

Statistics

  • 2 Posts
  • 4 Interactions

Last activity: 3 hours ago

Fediverse

Profile picture fallback

WordPress spent ten years letting strangers include arbitrary PHP. The patch dropped, exploits followed hours later. Update the server you forgot exists.
kaspersky.com/blog/cve-2026-87

  • 2
  • 2
  • 0
  • 21h ago

Bluesky

Profile picture fallback
cve-2026-87902 is gonna be the new skid spray and pray payload for a while huh?
  • 0
  • 0
  • 0
  • 3h ago

Overview

  • Wikimedia Foundation
  • Mediawiki - ExternalData Extension

25 Sep 2026
Published
26 Sep 2026
Updated

CVSS v4.0
CRITICAL (10.0)
EPSS
0.95%

KEV

Description

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Wikimedia Foundation Mediawiki - ExternalData Extension allows OS Command Injection. This issue affects Mediawiki - ExternalData Extension: from * before 3.7.

Statistics

  • 1 Post
  • 6 Interactions

Last activity: 12 hours ago

Fediverse

Profile picture fallback

[🚨 #MediaWiki vulnerable extension]

If you are running a MediaWiki instance with Extension:External_Data < v3.7, your instance is vulnerable to arbitrary file loading and #RemoteCodeExecution.

The vulnerability was apparently publicly known since August, but due to the lack of communication, instance admins learned about it due to that vulnerability being exploited en masse.

If you know and like a MediaWiki instance, you can check their Special:Version page to see if they are using the External_Data extension to warn them.

More info:
- lists.wikimedia.org/hyperkitty
- cve.org/CVERecord?id=CVE-2026-

#infosec #wikipedia #wikidata #adminsys #CVE #pwned cc @mediawiki

  • 4
  • 2
  • 0
  • 12h ago
Showing 1 to 10 of 81 CVEs