vulnerability Rockwell Automation FactoryTalk Analytics PavilionX This advisory from CISA details a critical vulnerability in Rockwell Automation’s FactoryTalk Analytics PavilionX software, specifically versions below 7.01. The flaw, stemming from improper authorization enforcement in… CISA Advisories · Jun 16, 2026 Critical CVE-2025-14272UScveauthorizationapi
vulnerability CISA warns of another cPanel plugin flaw exploited in attacks The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning about a critical vulnerability (CVE-2026-48172) in the LiteSpeed cPanel user-end plugin, which is currently being actively exploited.… BleepingComputer · Jun 16, 2026 Critical CVE-2026-54420CVE-2026-48172cpanelvulnerabilityprivilege escalation
vulnerability Cisco Patches Another SD-WAN Zero-Day Exploited in Attacks Cisco recently became aware of the exploitation of CVE-2026-20262, a Catalyst SD-WAN Manager zero-day that allows arbitrary file write. The post Cisco Patches Another SD-WAN Zero-Day Exploited in Attacks appeared first o… SecurityWeek · Jun 16, 2026 Critical CVE-2026-20262CVE-2026-20182CVE-2026-20127
vulnerability SimpleHelp bug lets hackers create rogue remote support accounts A critical vulnerability (CVE-2026-48558) in SimpleHelp remote management software allows unauthorized users to create privileged technician accounts via OpenID Connect (OIDC) authentication. This flaw, combined with spe… BleepingComputer · Jun 15, 2026 Critical CVE-2026-48558oidcremote managementauthentication
threat-intel Copilot 'SearchLeak' Attack Allows 1-Click Data Theft A critical vulnerability, dubbed ‘SearchLeak,’ has been discovered in Microsoft Copilot that allows attackers to silently steal user data through a novel prompt injection technique. The attack leverages a race condition… Dark Reading · Jun 15, 2026 Critical CVE-2026-42824prompt injectionai securitymicrosoft copilot
vulnerability Cisco fixes SD-WAN vManage flaw exploited in zero-day attacks Cisco has released a security update to address a critical zero-day vulnerability (CVE-2026-20262) in its SD-WAN vManage software, allowing attackers to gain root privileges. The flaw stems from improper input validation… BleepingComputer · Jun 15, 2026 Critical CVE-2026-20262CVE-2026-20133CVE-2026-20128zero-dayroot privilegefile upload
vulnerability LiteLLM Vulnerability Chain Lets Low-Privilege Users Take Over AI Gateway Servers A critical vulnerability chain in LiteLLM, an open-source AI gateway, allows low-privilege users to escalate their permissions to full administrator and execute arbitrary code on the server. Researchers at Obsidian Secur… The Hacker News · Jun 15, 2026 Critical CVE-2026-47101CVE-2026-47102CVE-2026-40217USaiproxyprivilege escalation
threat-intel New attack turned Microsoft 365 Copilot into 1-click data theft tool A critical vulnerability, dubbed SearchLeak, has been discovered in Microsoft 365 Copilot Enterprise, allowing attackers to steal sensitive data from user mailboxes, OneDrive, and SharePoint accounts via a specially craf… BleepingComputer · Jun 15, 2026 Critical CVE-2026-42824prompt injectionssrfhtml injection
apt Chinese hackers hijack auth flow, spy on isolated network for a decade Chinese cyber espionage group Velvet Ant conducted a decade-long operation, gaining persistent access to a large organization’s isolated critical infrastructure network by hijacking its authentication flow. The attackers… BleepingComputer · Jun 13, 2026 Critical CHespionageauthenticationpersistence
vulnerability Critical Splunk Enterprise Flaw Lets Attackers Run Code Without Authentication A critical vulnerability (CVE-2026-20253) has been identified in Splunk Enterprise versions below 10.2.4 and 10.0.7, allowing unauthenticated users to execute arbitrary code and potentially gain remote access. The flaw s… The Hacker News · Jun 13, 2026 Critical CVE-2026-20253USremote code executionauthenticationpostgresql
threat-intel LangGraph Flaw Chain Exposes Self-Hosted AI Agents to Remote Code Execution A critical vulnerability chain in LangGraph, an open-source AI agent framework, has been disclosed, allowing for remote code execution via SQL injection and unsafe deserialization. The flaws, affecting versions prior to… The Hacker News · Jun 12, 2026 Critical CVE-2025-67644CVE-2026-28277CVE-2026-27022USsql injectionremote code executionai agent
vulnerability CISA orders feds to patch actively exploited Ivanti flaw by Sunday CISA has issued a Binding Operational Directive (BOD) 26-04, mandating that federal agencies patch an actively exploited vulnerability (CVE-2026-10520) in Ivanti Sentry security gateways within three days. This vulnerabi… BleepingComputer · Jun 12, 2026 Critical CVE-2026-10520patchingcisavulnerability
vulnerability Google Confirms Exploitation of Oracle PeopleSoft Zero-Day by ShinyHunters Oracle has mitigated CVE-2026-35273, but it has not publicly confirmed the vulnerability’s in-the-wild exploitation. The post Google Confirms Exploitation of Oracle PeopleSoft Zero-Day by ShinyHunters appeared first on S… SecurityWeek · Jun 12, 2026 Critical CVE-2026-35273
vulnerability Oracle mitigates PeopleSoft zero-day exploited in data theft attacks A critical zero-day vulnerability (CVE-2026-35273) in Oracle PeopleSoft PeopleTools has been exploited by the ShinyHunters ransomware gang to steal data from numerous organizations. Oracle has released mitigations, but t… BleepingComputer · Jun 11, 2026 Critical CVE-2026-35273zero-daydata theftpeoplesoft
vulnerability Max-Severity Ivanti Flaw Exploited 24 Hours After Disclosure A critical vulnerability (CVE-2026-10520) in Ivanti Sentry was exploited within 24 hours of its disclosure, highlighting the speed at which attackers can react to newly released vulnerabilities. The flaw, an OS command i… Dark Reading · Jun 11, 2026 Critical CVE-2026-10520CVE-2026-10523CVE-2026-1340vulnerabilitycommand injectionroot access
vulnerability Oracle Addresses PeopleSoft Vulnerability Amid Reports of Zero-Day Attacks Oracle has released a patch for CVE-2026-35273, but it has not said whether it’s a zero-day exploited in ShinyHunters attacks. The post Oracle Addresses PeopleSoft Vulnerability Amid Reports of Zero-Day Attacks appeared… SecurityWeek · Jun 11, 2026 Critical CVE-2026-35273
vulnerability Brickcom Cameras This CISA advisory details a critical vulnerability in Brickcom cameras (Cube, Dome, Bullet, and Box models, version 3.2.3.5.6) that allows unauthenticated remote attackers to access live video feeds and retrieve sensiti… CISA Advisories · Jun 11, 2026 Critical CVE-2026-50245CVE-2026-50005default credentialsonvifremote access
threat-intel Naxclow IoT Platform This CISA advisory details a critical vulnerability in the Naxclow IoT Platform, specifically affecting versions of the Smart Doorbell X3, X Smart Home, V720, and ix cam devices. The flaw allows an attacker to impersonat… CISA Advisories · Jun 11, 2026 Critical CVE-2026-42947CVE-2026-50108CVE-2026-50101USiotcredential theftauthentication
vulnerability ‘GreatXML’ Zero-Day Exploit Bypasses BitLocker The PoC exploits Microsoft Defender’s offline scan to spawn a SYSTEM shell when rebooting in Recovery Mode. The post ‘GreatXML’ Zero-Day Exploit Bypasses BitLocker appeared first on SecurityWeek . SecurityWeek · Jun 11, 2026 Critical
vulnerability Microsoft Patches Exploited Exchange Server Vulnerability The company warned about zero-day attacks exploiting the Exchange Server vulnerability CVE-2026-42897 on May 14. The post Microsoft Patches Exploited Exchange Server Vulnerability appeared first on SecurityWeek . SecurityWeek · Jun 11, 2026 Critical CVE-2026-42897