24h | 7d | 30d

Overview

  • Cisco
  • Cisco Identity Services Engine Software

16 Sep 2026
Published
17 Sep 2026
Updated

CVSS v3.1
CRITICAL (10.0)
EPSS
0.92%

Description

A vulnerability in an API of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to bypass authentication. This vulnerability is due to insufficient authentication control on an API endpoint. An attacker could exploit this vulnerability by sending a crafted request to an affected API endpoint. A successful exploit could allow the attacker to gain unauthorized access to the affected device by bypassing the web-based management interface.

Statistics

  • 17 Posts
  • 1 Interaction

Last activity: Last hour

Fediverse

Profile picture fallback

Cisco ISE Zero-Day: CVE-2026-76460 Bypasses Authentication With a Perfect CVSS 10.0

Cisco ISE CVE-2026-76460 is a critical CVSS 10 authentication bypass. Learn how the flaw enables admin and root access, IOCs, hunting and fixes

thecybersecguru.com/news/cisco

  • 0
  • 0
  • 0
  • 23h ago
Profile picture fallback

CVE-2026-76460: CRITICAL auth bypass in Cisco ISE & ISE-PIC is actively exploited. Remote attackers can gain admin access via crafted API requests. Patch ISE 3.1 – 3.5 now — no workarounds. More: radar.offseq.com/threat/cisco-

  • 0
  • 0
  • 0
  • 21h ago
Profile picture fallback

(CISA CS-MAN) The Cyber Mind CSUITE Brief: CVE-2026-76460 – Cisco Identity Services Engine Incorrect Use of Privileged APIs Vulnerability

A strategic executive briefing detailing privileged API mitigation, network segmentation, and zero-trust verification frameworks for CVE-2026-76460 in Cisco ISE....

thecybermind.co/78ny

  • 0
  • 0
  • 0
  • 21h ago
Profile picture fallback

📰 Cisco ISE Zero-Day (CVSS 10.0) Under Active Attack, Bypasses Auth

Cisco warns of a critical (CVSS 10.0) zero-day in Identity Services Engine (ISE) actively exploited in the wild. The flaw, CVE-2026-76460, allows full authentication bypass. CISA added to KEV catalog. Patch immediately! #Cisco #ZeroDay #CyberSecurity

🔗 cyber.netsecops.io/articles/ci

  • 0
  • 0
  • 0
  • 16h ago
Profile picture fallback

⚠️ CRITICAL: Cisco alerts customers to second actively exploited zero-day in as many days

Cisco ISE zero-day CVE-2026-76460 is actively exploited in the wild. Remote attackers can bypass authentication, take full device control, modify network policies, and steal credentials. If you run ISE, this is a direct threat to your network perimeter and access controls.

threatnoir.com/focus

🤖 AI generated summary

  • 0
  • 0
  • 0
  • 5h ago
Profile picture fallback

「Cisco、ISE認証バイパスの新たなゼロデイ脆弱性(CVSS 10.0)が現在進行中の攻撃で悪用されていると警告 」: #TheHackerNews

「Ciscoは、Identity Services Engine(ISE)に影響を与える新たな最高レベルのセキュリティ脆弱性が発見され、現在悪用されていると警告した。

CVE-2026-76460 (CVSSスコア:10.0)として追跡されているこの脆弱性により 、認証されていないリモート攻撃者が認証を回避できる可能性がある。

「この脆弱性は、APIエンドポイントにおける認証制御の不備に起因するものです」とシスコは述べています。「攻撃者は、細工されたリクエストを影響を受けるAPIエンドポイントに送信することで、この脆弱性を悪用する可能性があります。攻撃が成功すると、攻撃者はWebベースの管理インターフェースを迂回して、影響を受けるデバイスへの不正アクセスを取得できる可能性があります。」 」

thehackernews.com/2026/09/cisc

#prattohome

  • 0
  • 0
  • 0
  • Last hour
Profile picture fallback

📰 CISA Adds Actively Exploited Cisco and Acronis Flaws to KEV Catalog

CISA adds two actively exploited vulnerabilities to its KEV catalog: a critical Cisco ISE auth bypass (CVE-2026-76460) and an Acronis Backup flaw (CVE-2026-87886). Federal agencies must patch urgently. #CISA #KEV #PatchNow

🔗 cyber.netsecops.io/articles/ci

  • 0
  • 0
  • 0
  • 16h ago
Profile picture fallback

Critical cybersecurity alerts issued as Check Point (CVE-2026-91843) and Cisco (CVE-2026-76460) disclose severe vulnerabilities, with Cisco's already exploited. Geopolitically, USCG/FBI investigate suspected foreign cyberattacks on two oil tankers; Iran reportedly targeted another in the Strait of Hormuz. Tech advances with OpenAI's 'Astra for Law' for legal AI workflows.

#Cybersecurity #TechNews #Geopolitics

  • 0
  • 0
  • 0
  • 3h ago

Bluesky

Profile picture fallback
“Tracked as CVE-2026-76460 (CVSS score of 10/10), the security defect impacts an API endpoint of the appliance, which does not apply sufficient authentication controls.” www.securityweek.com/active-explo...
  • 0
  • 1
  • 0
  • 14h ago
Profile picture fallback
Cisco warns of active exploitation of CVE-2026-76460, a max-severity auth bypass in Cisco ISE and ISE-PIC. Emergency patches are available, with no workaround and guidance to check for compromise. #CiscoISE #CVE-2026-76460 #CISA
  • 0
  • 0
  • 0
  • 22h ago
Profile picture fallback
Unauthenticated attackers are bypassing Cisco ISE’s management interface (CVE-2026-76460) 📖 Read more: www.helpnetsecurity.com/2026/09/17/c... #cybersecurity #cybersecuritynews #accesscontrol #enterprise #exploit #identityverification @cisco.com
  • 0
  • 0
  • 0
  • 21h ago
Profile picture fallback
Cisco issued emergency patches for a critical Cisco ISE zero-day, CVE-2026-76460. Active exploitation can bypass authentication, gain root access, and hide compromise. #Cisco #ISE #CISA
  • 0
  • 0
  • 0
  • 21h ago
Profile picture fallback
CVE-2026-76460 is a CVSS 10.0 flaw in Cisco ISE that enables unauthenticated remote authentication bypass and unauthorized access, already actively exploited.
  • 0
  • 0
  • 0
  • 18h ago
Profile picture fallback
~Cybergcca~ CVE-2026-76460 is actively exploited; patch affected Cisco products. - IOCs: CVE-2026-76460 - #CVE202676460 #Cisco #ThreatIntel
  • 0
  • 0
  • 0
  • 16h ago
Profile picture fallback
Unauthenticated attackers are bypassing Cisco ISE’s management interface (CVE-2026-76460)(認証なしの攻撃者がCisco ISEの管理インターフェースを回避、CVE-2026-76460が実悪用) #HelpNetSecurity (Sep 17) www.helpnetsecurity.com/2026/09/17/c...
  • 0
  • 0
  • 0
  • 6h ago
Profile picture fallback
The latest update for #BitSight includes "CVE-2026-76460: A critical Cisco ISE authentication bypass under active exploitation" and "While Defenders Watch the Zero-Day Clock, Attackers Are Looking Elsewhere". #Cybersecurity #RiskManagement https://opsmtrs.com/43KoF0t
  • 0
  • 0
  • 0
  • 5h ago
Profile picture fallback
Cisco disclosed CVE-2026-76460, a max-severity zero-day in Cisco ISE actively exploited before patching, enabling remote auth bypass, full device compromise, and possible lateral movement. #Cisco #CiscoISE #CVE202676460
  • 0
  • 0
  • 0
  • 2h ago

Overview

  • Google
  • Android

15 Sep 2026
Published
17 Sep 2026
Updated

CVSS
Pending
EPSS
0.21%

Description

In Cellular Modem, there is a possible permission bypass due to a logic error in the code. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

Statistics

  • 3 Posts
  • 30 Interactions

Last activity: 1 hour ago

Fediverse

Profile picture fallback

Google sieht Hinweise auf eine begrenzte, gezielte Ausnutzung von
CVE-2026-58704 auf Pixel-Geräten. Die Schwachstelle steckt im Modem
und ermöglicht eine Rechteausweitung. Der September-Patchlevel
2026-09-05 behebt die Lücke.

source.android.com/docs/securi

#Android #Pixel #ITSecurity

  • 12
  • 11
  • 0
  • 1h ago
Profile picture fallback

🚨 Google confirms Pixel phones targeted in zero-click zero-day attacks

Google has patched CVE-2026-58704, a high-severity vulnerability in Pixel phones' cellular modem that the company says was already under "limited, targeted exploitation."

The flaw is caused by a logic error that can allow an attacker to bypass permission checks and escalate privileges beyond the modem's isolated environment.

Most importantly, exploitation requires no interaction from the victim.

No malicious link needs to be clicked and no file needs to be opened, making it a zero-click attack.

Google has not disclosed:

• Who carried out the attacks
• How many Pixel owners were targeted
• How the victims were selected
• What tools or spyware may have been deployed

CISA has added CVE-2026-58704 to its Known Exploited Vulnerabilities catalog and set a September 19 remediation deadline for affected federal systems.

Google says Pixel devices with the September 5, 2026 security patch level or later are protected.

Pixel owners should update their devices immediately.

Source: techcrunch.com/2026/09/16/goog

  • 2
  • 5
  • 0
  • 14h ago
Profile picture fallback

Hey @GrapheneOS do you happen to know when CVE-2026-58704 will be patched?

(to clarify, tone is not meant to be passive aggressive, genuinely just curious)

  • 0
  • 0
  • 0
  • 14h ago

Overview

  • Docker
  • Docker Sandboxes

15 Sep 2026
Published
15 Sep 2026
Updated

CVSS v4.0
CRITICAL (9.4)
EPSS
0.16%

KEV

Description

On macOS, the virtio-fs host server used by Docker Sandboxes improperly follows symlinks when reopening an unlinked file from a stored path. A malicious guest can replace a parent directory with a symlink, escape the shared workspace, and read or modify arbitrary host files as the VMM user, potentially achieving host code execution.

Statistics

  • 5 Posts
  • 2 Interactions

Last activity: Last hour

Fediverse

Profile picture fallback

‼️ ALERT - Critical Docker Sandboxes flaw lets malicious guest code escape the shared workspace and read or modify files across a macOS host.

CVE-2026-77179 crosses the virtio-fs boundary with the host account’s rights.

Read how the escape works → thehackernews.com/2026/09/crit

  • 0
  • 1
  • 0
  • 15h ago
Profile picture fallback

「Dockerサンドボックスの重大な脆弱性により、悪意のあるゲストコードがmacOSホストファイルを読み取り、変更することが可能になる。 」: #TheHackerNews

「Dockerは9月15日のセキュリティ発表 で、macOS上のDocker Sandboxes 仮想マシン内で実行されている悪意のあるコードが、 共有されているプロジェクトディレクトリから脱出し、ホスト上の他の場所にあるファイルを読み取ったり変更したりする可能性があると警告した 。

このエスケープ処理は、仮想マシンを実行するホストアカウントの権限で実行されます。この脆弱性( CVE-2026-77179 )は、深刻度が「重大」と評価されており、macOS 版のバージョン 0.28.0 から 0.42.0 まで(0.42.0 は含まない)に影響があり、 9 月 7 日にリリースされたバージョン 0.42.0 で修正されました。 」

thehackernews.com/2026/09/crit

#prattohome

  • 0
  • 1
  • 0
  • Last hour
Profile picture fallback

Critical Docker Sandboxes Flaws Let AI Agents Escape MicroVMs to Hijack Hosts (CVE-2026-77179 & CVE-2026-79994)

Critical Docker Sandboxes flaws CVE-2026-77179 and CVE-2026-79994 can let malicious AI agents escape microVM isolation and access the host system

thecybersecguru.com/news/docke

  • 0
  • 0
  • 0
  • 1h ago

Bluesky

Profile picture fallback
Containers don't contain, but VMs don't contain either 🙂 Latest example, Docker Sandboxes where a vulnerability in virtio-fs host server allows a host breakout / code execution (CVE-2026-77179). There's also CVE-2026-79994, another symlink related bug (with Unix domain sockets).
  • 0
  • 0
  • 0
  • 12h ago
Profile picture fallback
Docker Sandboxes 0.42.0 security update: CVE-2026-77179 and CVE-2026-79994 #patchmanagement
  • 0
  • 0
  • 0
  • 4h ago

Overview

  • checkpoint
  • Quantum Security Management

16 Sep 2026
Published
17 Sep 2026
Updated

CVSS v3.1
CRITICAL (9.8)
EPSS
0.50%

KEV

Description

A stack overflow during the unauthenticated login process may allow an attacker to run arbitrary code remotely with root privileges.

Statistics

  • 3 Posts

Last activity: Last hour

Fediverse

Profile picture fallback

Check Point Security Mgmt & Log Server hit by CRITICAL RCE (CVE-2026-91843) via unauthenticated login. No active exploitation yet. Patch ASAP. Tanium (SQLi, RCE) & Kaspersky (Redis) also patched. radar.offseq.com/threat/check-

  • 0
  • 0
  • 0
  • Last hour
Profile picture fallback

Critical cybersecurity alerts issued as Check Point (CVE-2026-91843) and Cisco (CVE-2026-76460) disclose severe vulnerabilities, with Cisco's already exploited. Geopolitically, USCG/FBI investigate suspected foreign cyberattacks on two oil tankers; Iran reportedly targeted another in the Strait of Hormuz. Tech advances with OpenAI's 'Astra for Law' for legal AI workflows.

#Cybersecurity #TechNews #Geopolitics

  • 0
  • 0
  • 0
  • 3h ago

Bluesky

Profile picture fallback
Check Point Security ManagementにCritical 脆弱性 CVE-2026-91843 認証不要でroot権限の任意コード実行 rocket-boys.co.jp/security-mea... #セキュリティ対策Lab #security #securitynews #セキュリティ
  • 0
  • 0
  • 0
  • 6h ago

Overview

  • Acronis
  • Acronis Backup plugin for cPanel & WHM

17 Sep 2026
Published
17 Sep 2026
Updated

CVSS v3.0
HIGH (7.8)
EPSS
Pending

Description

Local privilege escalation due to insecure file permissions. The following products are affected: Acronis Backup plugin for cPanel & WHM (Linux) before build 1.9.3.1021, Acronis Backup extension for Plesk (Linux) before build 1.8.11.638, Acronis Backup plugin for DirectAdmin (Linux) before build 1.2.3.238.

Statistics

  • 3 Posts

Last activity: 16 hours ago

Fediverse

Profile picture fallback

(CISA CS-MAN) The Cyber Mind CSUITE Brief: CVE-2026-87886 – Acronis Backup Incorrect Default Permissions Vulnerability

A strategic executive briefing detailing permission hardening, risk deliberation, and incident response frameworks for CVE-2026-87886 in Acronis Backup environments....

thecybermind.co/enr6

  • 0
  • 0
  • 0
  • 22h ago
Profile picture fallback

📰 CISA Adds Actively Exploited Cisco and Acronis Flaws to KEV Catalog

CISA adds two actively exploited vulnerabilities to its KEV catalog: a critical Cisco ISE auth bypass (CVE-2026-76460) and an Acronis Backup flaw (CVE-2026-87886). Federal agencies must patch urgently. #CISA #KEV #PatchNow

🔗 cyber.netsecops.io/articles/ci

  • 0
  • 0
  • 0
  • 16h ago

Bluesky

Profile picture fallback
Acronis Backup Plugin Local Privilege Escalation Vulnerability CVE-2026-87886 #patchmanagement
  • 0
  • 0
  • 0
  • 19h ago

Overview

  • Mitsubishi Electric Corporation
  • GX Works3

17 Sep 2026
Published
17 Sep 2026
Updated

CVSS v4.0
CRITICAL (9.2)
EPSS
0.12%

KEV

Description

Incorrect Implementation of Authentication Algorithm Vulnerability in Mitsubishi Electric GX Works3 and Motion Control Setting allows a local attacker to successfully authenticate even with an invalid block password by executing the affected product and modifying part of the executable module in memory, and thereby may be able to view, tamper with, destroy, or delete control programs.

Statistics

  • 2 Posts

Last activity: 12 hours ago

Fediverse

Profile picture fallback

CVE-2026-15688 | Mitsubishi Electric GX Works3 (CVSS 9.2, CRITICAL): Local attackers can bypass authentication by modifying memory, risking control program compromise. No fix yet — restrict local access. radar.offseq.com/threat/cve-20

  • 0
  • 0
  • 0
  • 23h ago

Bluesky

Profile picture fallback
~Cisa~ Local attackers can bypass block passwords and alter or destroy control programs. - IOCs: CVE-2026-15688 - #CVE202615688 #ICS #ThreatIntel
  • 0
  • 0
  • 0
  • 12h ago

Overview

  • Cisco
  • Cisco Secure Email

14 Sep 2026
Published
15 Sep 2026
Updated

CVSS v3.1
CRITICAL (9.8)
EPSS
2.01%

Description

A vulnerability in the email parsing of Cisco AsyncOS Software for Cisco Secure Email Gateway could allow an unauthenticated, remote attacker to execute arbitrary commands with root privileges on the underlying operating system. This vulnerability is due to insufficient validation in the email parsing logic. An attacker could exploit this vulnerability by sending a crafted email message that contains malicious SQL statements through an affected device. A successful exploit could allow the attacker to execute arbitrary SQL statements, leading to command execution with root privileges on the underlying operating system.

Statistics

  • 2 Posts

Last activity: 18 hours ago

Fediverse

Profile picture fallback

Cisco Zero-Day wird aktiv angegriffen

Mal was neues - ach nein, Hintertüren bei Cisco sind ja gar nicht neu, sondern schon fast Gewohnheit. Am Montag hat die Firma ihre Kunden informiert, dass im Secure Email Gateway (SEG) eine Sicherheitslücke steckt, die bereits aktiv angegriffen wird. Dabei ist gleichgültig, ob das SEG auf eigener Hardware (Appliance) läuft oder als virtuelle Maschine oder Cloud-Dienst. Auch die Konfiguration des SEG macht keinen Unterschied. Das muss man sich mal auf der Zunge zergehen lassen: Das SEG, das vor schädlichen E-Mails schützen soll, kann durch genau solche angegriffen werden! Die Sicherheitslücke CVE-2026-76461 ... Weiterlesen:

pc-fluesterer.info/wordpress/2

#0day #backdoor #closedsource #email #exploits #hersteller #sicherheit #UnplugTrump #zeroday #cisco

  • 0
  • 0
  • 0
  • 18h ago

Bluesky

Profile picture fallback
CVE-2026-76461, un courriel piégé suffit à prendre la main sur les passerelles de messagerie de Cisco - IT SOCIAL itsocial.fr/cybersecurit...
  • 0
  • 0
  • 0
  • 21h ago

Overview

  • Docker
  • Docker Sandboxes

15 Sep 2026
Published
16 Sep 2026
Updated

CVSS v4.0
HIGH (8.7)
EPSS
0.11%

KEV

Description

The guest-to-host Unix-domain socket relay in Docker Sandboxes validates that a socket path is inside an authorized workspace, but later reconnects using the pathname. A malicious guest can replace an intermediate directory with a symlink between validation and connection, causing the host to connect to an arbitrary AF_UNIX socket outside the shared workspace. This can expose data or host-side capabilities provided by the targeted socket.

Statistics

  • 3 Posts

Last activity: 1 hour ago

Fediverse

Profile picture fallback

Critical Docker Sandboxes Flaws Let AI Agents Escape MicroVMs to Hijack Hosts (CVE-2026-77179 & CVE-2026-79994)

Critical Docker Sandboxes flaws CVE-2026-77179 and CVE-2026-79994 can let malicious AI agents escape microVM isolation and access the host system

thecybersecguru.com/news/docke

  • 0
  • 0
  • 0
  • 1h ago

Bluesky

Profile picture fallback
Containers don't contain, but VMs don't contain either 🙂 Latest example, Docker Sandboxes where a vulnerability in virtio-fs host server allows a host breakout / code execution (CVE-2026-77179). There's also CVE-2026-79994, another symlink related bug (with Unix domain sockets).
  • 0
  • 0
  • 0
  • 12h ago
Profile picture fallback
Docker Sandboxes 0.42.0 security update: CVE-2026-77179 and CVE-2026-79994 #patchmanagement
  • 0
  • 0
  • 0
  • 4h ago

Overview

  • HP Inc.
  • HP Linux Imaging and Printing Software (HPLIP)

16 Sep 2026
Published
17 Sep 2026
Updated

CVSS v4.0
CRITICAL (9.3)
EPSS
0.67%

KEV

Description

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The findings affect several software components that could potentially enable remote code execution, privilege escalation, denial of service, information disclosure, or unauthorized file modification under certain conditions.

Statistics

  • 1 Post
  • 2 Interactions

Last activity: 17 hours ago

Fediverse

Profile picture fallback

HP patched critical HPLIP vulnerabilities. Update your print drivers to fix HPLIP vulnerabilities and prevent remote code execution.

securityonline.info/hp-fixes-h

  • 1
  • 1
  • 0
  • 17h ago

Overview

  • Linux
  • Linux

11 Sep 2026
Published
14 Sep 2026
Updated

CVSS
Pending
EPSS
0.18%

KEV

Description

In the Linux kernel, the following vulnerability has been resolved: ipmi: si: Fix NULL pointer dereference after failed registration try_smi_init() allocates new_smi->si_sm and later calls ipmi_register_smi_mod(), which maps to ipmi_add_smi(). During ipmi_add_smi(), the upper IPMI message handler obtains the initial BMC device information through __bmc_get_device_id(). This can fail if the BMC does not return a successful response to the Get Device ID command. When the BMC returns a nonzero completion code, the device-id helper retries the command and eventually returns -EIO if the device ID still cannot be fetched. On this failure path, ipmi_add_smi() logs "Unable to get the device id" and goes to out_err_started, where it invokes the lower driver's shutdown callback. try_smi_init() then logs the returned registration failure: ipmi_si IPI0001:00: IPMI message handler: Unable to get the device id: -5 ipmi_si IPI0001:00: Unable to register device: error -5 For ipmi_si, the shutdown callback is shutdown_smi(), which cleans up the SI state machine data, frees smi_info->si_sm, and sets smi_info->si_sm and smi_info->intf to NULL. However, intf->in_shutdown is not set on this failed-registration rollback path. Therefore, the asynchronous redo_bmc_reg work item can still retry BMC device-id probing after the lower driver has already cleared its SI state machine data. In the observed case, that retry path reached start_next_msg(), which passed the NULL smi_info->si_sm pointer to the selected KCS state machine handler: BUG: unable to handle kernel NULL pointer dereference at 0000000000000000 Workqueue: events redo_bmc_reg [ipmi_msghandler] RIP: start_kcs_transaction+0x2c/0x190 [ipmi_si] Call Trace: start_next_msg+0x50/0x80 [ipmi_si] check_start_timer_thread.part.9+0x3b/0x50 [ipmi_si] sender+0x69/0x80 [ipmi_si] i_ipmi_request+0x2ac/0x9d0 [ipmi_msghandler] __get_device_id.isra.29+0xaa/0x180 [ipmi_msghandler] __bmc_get_device_id+0xef/0x950 [ipmi_msghandler] redo_bmc_reg+0x52/0x60 [ipmi_msghandler] process_one_work+0x1a7/0x360 Set intf->in_shutdown on the out_err_started path before invoking the lower driver's shutdown callback. This prevents later redo_bmc_reg retries from using an interface whose lower driver state has been cleaned up, and applies the same shutdown state to other IPMI interfaces as well.

Statistics

  • 1 Post
  • 1 Interaction

Last activity: 23 hours ago

Fediverse

Profile picture fallback

CVE-2026-81005 Linux kernel NULL pointer dereference in ipmi_si after failed SMI registration. CVSS N/A. Unpatched. A BMC that fails Get Device ID can crash the kernel. Patch now. valtersit.com/cve/CVE-2026-810 #CVE #Linux #infosec

  • 1
  • 0
  • 0
  • 23h ago
Showing 1 to 10 of 79 CVEs