vulnerability New 7-Zip Vulnerability Could Let Crafted XZ Archives Run Code During Extraction A vulnerability (CVE-2026-14266) in 7-Zip’s XZ archive handling allows an attacker to execute code on a victim machine by crafting a malicious XZ archive. The vulnerability stems from a buffer overflow when processing XZ chunked data, and a patch was released on June 25th. While a proof-of-concept is not yet available,… The Hacker News · Jul 20, 2026 High CVE-2026-14266CVE-2026-48095buffer overflowremote code executionarchive handling
threat-intel ⚡ Weekly Recap: New Linux Flaw, PAN-OS Exploit, AI-Powered Attacks, OAuth Phishing and More This Hacker News recap details several ongoing cyber threats, including an active exploitation of a PAN-OS GlobalProtect authentication bypass vulnerability, a critical zero-day vulnerability in the Gogs Git service, and… The Hacker News · Jun 1, 2026 High CVE-2026-0257CVE-2026-8732CVE-2026-27771RUvulnerabilityauthenticationc2