vulnerability Cisco Unified CM flaw CVE-2026-20230 now exploited in attacks A high-severity Server-Side Request Forgery (SSRF) vulnerability, CVE-2026-20230, in Cisco Unified Communications Manager is currently being actively exploited by threat actors. This allows attackers to gain root privile… BleepingComputer · Jun 23, 2026 High CVE-2026-20230ssrfcve-2026-20230root
vulnerability Data Exposure Flaws Threaten Dify AI Platform Used by 1 Million Apps A significant vulnerability has been identified in the Dify AI platform, a widely used LLMOps solution powering over one million applications across numerous industries. The flaws, detailed as CVE-2026-41947 through CVE-… SecurityWeek · Jun 23, 2026 Critical CVE-2026-41947CVE-2026-41948CVE-2026-41949aillmopsdata-exposure
vulnerability Eight-Year-Old Samsung KNOX Flaw Exposed Millions of Galaxy Devices to Kernel Attacks Researchers discovered a long-standing vulnerability (CVE-2026-20971) in Samsung’s KNOX kernel across numerous Galaxy devices, from S9 to S25. The flaw, a race-condition use-after-free (UAF), allowed for potential kernel… SecurityWeek · Jun 23, 2026 High uafkernelrace condition
vulnerability Siemens WinCC Certificate Manager A vulnerability has been identified in Siemens WinCC Certificate Manager, specifically versions V16 through V21, that allows an attacker to potentially extract sensitive information due to insufficient protection of key… CISA Advisories · Jun 23, 2026 High CVE-2026-24349GEcertificatekey managementindustrial control systems
vulnerability CISA Adds Four Known Exploited Vulnerabilities to Catalog CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog , based on evidence of active exploitation. CVE-2025-67038 Lantronix EDS5000 Code Injection Vulnerability CVE-2026-34908 Ubiqui… CISA Advisories · Jun 23, 2026 High CVE-2025-67038CVE-2026-34908CVE-2026-34909
vulnerability ABB Freelance Security Lock This report details a critical vulnerability in ABB’s Freelance Security Lock software, allowing attackers to bypass security measures and potentially gain access to underlying operating system functions. The vulnerabili… CISA Advisories · Jun 23, 2026 Critical CVE-2025-7064WOkeyboardsecuritybypass
vulnerability Siemens Products using OpenSSL A stack-based buffer overflow vulnerability (CVE-2025-15467) has been identified in various Siemens products utilizing OpenSSL. This vulnerability allows a remote attacker to potentially cause a denial-of-service or exec… CISA Advisories · Jun 23, 2026 High CVE-2025-15467DEUSCNopensslbuffer overflowdenial of service
vulnerability Impact of Linux Kernel vulnerabilities on B&R products View CSAF Summary B&R is aware of publicly reported vulnerabilities affecting the Linux kernel versions shipped with the products listed as affected in the advisory. Successful local exploitation of these vulnerabilities… CISA Advisories · Jun 23, 2026 High CVE-2026-31431CVE-2026-43284CVE-2026-46333
vulnerability Siemens SIPROTEC 5 Using DIGSI5 Protocol This CISA advisory details a vulnerability in Siemens SIPROTEC 5 devices, specifically utilizing the DIGSI5 protocol, that allows authenticated users to upload arbitrary files. This could lead to denial-of-service condit… CISA Advisories · Jun 23, 2026 High CVE-2025-40808relayprotocoldenial of service
vulnerability Hubbell Aclara Metrum Cellular Web Interface This CISA advisory details a vulnerability in Hubbell Aclara Metrum Cellular Web Interface software, specifically versions prior to 2.1.0.105. The flaw allows unauthorized access to critical device settings, potentially… CISA Advisories · Jun 23, 2026 High CVE-2026-1840USfirmwareauthenticationcritical infrastructure
vulnerability FFmpeg PixelSmash Flaw Allows RCE on Video Players, Media Servers, NAS Appliances A critical vulnerability, dubbed PixelSmash, has been identified in FFmpeg, a widely used media processing framework. The flaw allows for remote code execution (RCE) via crafted media files, potentially impacting a broad… SecurityWeek · Jun 23, 2026 Critical CVE-2026-8461USUKremote code executionmedia processingheap overflow
vulnerability DifyTap Bugs Let Attackers 'Wiretap' AI Chat Histories A series of vulnerabilities, dubbed "DifyTap," have been discovered in the Dify AI application building platform, allowing attackers to potentially access and exfiltrate sensitive data, including AI chat histories. The f… Dark Reading · Jun 22, 2026 High CVE-2026-41947CVE-2026-41948CVE-2026-41949aisecurityvulnerability
vulnerability Microsoft fixes AutoGen Studio flaw that enabled code execution A vulnerability, dubbed AutoJack, was discovered in Microsoft’s AutoGen Studio, a framework for building multi-agent AI systems. The flaw allowed attackers to execute arbitrary commands on a host system by manipulating a… BleepingComputer · Jun 22, 2026 Medium aiagentremote code execution
vulnerability 29-Year-Old Squid Proxy Bug 'Squidbleed' Can Leak Cleartext HTTP Requests A 29-year-old vulnerability, dubbed Squidbleed (CVE-2026-47729), exists in the Squid web proxy due to a heap over-read. This allows an attacker with proxy access to leak cleartext HTTP requests, including credentials and… The Hacker News · Jun 22, 2026 Medium CVE-2026-47729CVE-2026-50012heap_overflowhttpftp
vulnerability Decades-Old Squid Proxy Flaw ‘Squidbleed’ Can Expose User Data Squidbleed, discovered with the aid of Claude Mythos Preview, has been described as a Heartbleed-style vulnerability. The post Decades-Old Squid Proxy Flaw ‘Squidbleed’ Can Expose User Data appeared first on SecurityWeek… SecurityWeek · Jun 22, 2026 Medium CVE-2026-47729
vulnerability New Exploit Bypasses Apple’s Boot Defenses, Affects Millions of iPhones The vulnerability exploited by the Usbliter8 exploit cannot be patched and a PoC exploit has been released by researchers. The post New Exploit Bypasses Apple’s Boot Defenses, Affects Millions of iPhones appeared first o… SecurityWeek · Jun 22, 2026 Medium
vulnerability Hackers Exploit Gravity SMTP WordPress Plugin Bug to Expose API Keys A vulnerability in the Gravity SMTP WordPress plugin has been exploited by attackers, allowing them to extract sensitive data such as API keys and configuration details from approximately 100,000 sites. The flaw, tracked… The Hacker News · Jun 20, 2026 Medium CVE-2026-4020USwordpressapicredentials
vulnerability Hackers exploit info disclosure bug in Gravity SMTP WordPress plugin Hackers are actively exploiting a vulnerability in the Gravity SMTP WordPress plugin, allowing them to access sensitive information such as API keys and email service credentials. This flaw, tracked as CVE-2026-4020, has… BleepingComputer · Jun 19, 2026 Medium CVE-2026-4020CVE-2026-8713wordpressapicredentials
vulnerability In Other News: Apple Patches Beats Eavesdropping Flaw, DOT Closes Delta CrowdStrike Probe, AWS Continuum This week’s cybersecurity news highlights several significant vulnerabilities and attacks across various platforms and industries. A critical phpBB flaw enabled session hijacking, while vulnerabilities in Chrome extensio… SecurityWeek · Jun 19, 2026 High CVE-2025-20701CHISsession hijackingchrome extensionssupply chain attack
vulnerability CryptoBandits Malware Doubles as a Backdoor, Abuses Tor CryptoBandits uses a local SOCKS5 proxy for traffic routing, blending data theft with remote code execution. The post CryptoBandits Malware Doubles as a Backdoor, Abuses Tor appeared first on SecurityWeek . SecurityWeek · Jun 19, 2026 High