Documented vulnerability advisories
Every entry documented: technical breakdown, impact, mitigation and detection, with severity, CVSS and exploitation status at a glance.
124 advisories

CVE-2026-42055: NGINX Plus & Open Source Heap Buffer Overflow in HTTP/2 Proxy Modules
CVE-2026-42055 is a critical (CVSS 9.2) heap-based buffer overflow in NGINX Plus and NGINX Open Source HTTP/2 proxy modules that can crash worker processes or enable remote code execution when ASLR is disabled.

CVE-2026-42530: NGINX HTTP/3 QUIC Use-after-Free Allows RCE (CVSS 9.2)
CVE-2026-42530 is a critical Use-after-Free flaw in NGINX Open Source's HTTP/3 QUIC module. A remote unauthenticated attacker can trigger worker process crashes or execute code when ASLR is disabled.

CVE-2026-20262: Cisco Catalyst SD-WAN Manager Arbitrary File Write via Path Traversal
CVE-2026-20262 is a medium-severity path traversal flaw in Cisco Catalyst SD-WAN Manager that lets an authenticated remote attacker create or overwrite any file on the OS, enabling privilege escalation to root. CISA has added it to the KEV catalog.

Windows Kernel Use-After-Free CVE-2026-45657: Critical RCE Risk
CVE-2026-45657 is a critical use-after-free flaw in the Windows Kernel scoring 9.8 CVSS, allowing unauthenticated remote code execution on Windows 11 and Windows Server 2022/2025.

CVE-2026-11645: Chrome V8 Out-of-Bounds Read/Write Enables Remote Code Execution
CVE-2026-11645 is a high-severity out-of-bounds read/write flaw in Chrome's V8 engine (CVSS 8.8) actively exploited in the wild. Federal agencies must patch by 2026-06-23.

Check Point Gaia OS IKEv1 Authentication Bypass Allows Unauthorized VPN Access
CVE-2026-50751 is a critical authentication bypass in Check Point Gaia OS IKEv1 VPN that lets remote attackers establish VPN sessions without valid credentials. Actively exploited.

7-Zip Heap Buffer Overflow via NTFS Handler Integer Overflow (CWE-190)
CVE-2026-48095 is a critical heap buffer overflow in 7-Zip versions 26.00 and earlier caused by integer overflow in NTFS stream handling, enabling arbitrary code execution.

Cisco Unified CM SSRF Flaw Enables Root Privilege Escalation via WebDialer
CVE-2026-20230 is a critical-rated SSRF vulnerability in Cisco Unified CM and Unified CM SME that lets unauthenticated remote attackers write files and escalate privileges to root when WebDialer is enabled.

Android Framework Integer Overflow (Privilege Escalation Zero-Day)
An integer overflow in the Android Framework component creates a possible way to achieve code execution in multiple locations. This could lead to local escalation of privilege with no additional execution privileges needed, and user interaction is not needed for exploitation. Google indicated the flaw may be under limited, targeted exploitation, and it was fixed in the Android security updates published with the 2026-06 patch level.

UniFi OS Improper Access Control Flaw Earns Perfect CVSS 10 Score
CVE-2026-34908 is a critical improper access control flaw in Ubiquiti UniFi OS devices scoring a perfect CVSS 10, actively exploited in the wild with a federal remediation deadline of 2026-06-26.

Windows YellowKey Security Feature Bypass Vulnerability Explained
CVE-2026-45585 is a medium-severity Windows security feature bypass flaw affecting BitLocker. Physical access required. TPM+PIN users are not at risk.

Palo Alto Networks PAN-OS, GlobalProtect authentication bypass
Authentication bypass vulnerabilities in the GlobalProtect portal and gateway of Palo Alto Networks PAN-OS software allow an attacker to bypass security restrictions and establish an unauthorized VPN connection. The issue stems from reliance on cookies without validation and integrity checking (CWE-565). Panorama and Cloud NGFW are not impacted by these issues.

Azure Cloud Shell, unauthenticated command injection (spoofing over network)
Improper neutralization of special elements used in a command ('command injection') in Azure Cloud Shell allows an unauthorized attacker to perform spoofing over a network.

Windows Netlogon Stack Buffer Overflow CVE-2026-41089: Critical RCE Risk
CVE-2026-41089 is a critical stack-based buffer overflow in Windows Netlogon allowing unauthenticated remote code execution on all supported Windows Server versions. CVSS 9.8.

Redis, unblock-client use-after-free RCE
A use-after-free vulnerability in Redis affects the unblock client flow of redis-server. When re-executing a blocked command, the server does not handle an error return from processCommandAndResetClient, and if the blocked client is evicted during this flow an authenticated attacker can trigger a use-after-free that may lead to remote code execution. The defect was introduced in Redis 7.2.0 and is present through 8.6.2; it is patched in version 8.6.3.

Progress MOVEit Automation, unauthenticated authentication bypass (MOVEit Automation Auth Bypass)
Progress MOVEit Automation contains an authentication bypass by primary weakness vulnerability that allows a remote, unauthenticated attacker to bypass authentication on the MOVEit Automation service backend command port. By invoking privileged operations without valid credentials, an attacker can gain administrative control over the file-transfer automation engine. Successful exploitation enables access to, modification of, and redirection of sensitive automated file transfers.

Cisco Identity Services Engine, authenticated OS command injection (Cisco ISE Command Injection)
A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) and Cisco ISE Passive Identity Connector (ISE-PIC) could allow an authenticated, remote attacker to execute arbitrary operating system commands on the underlying device. The flaw is due to insufficient validation of user-supplied input in HTTP requests. An attacker with valid administrative credentials could send a crafted HTTP request to obtain user-level command execution and then escalate privileges to root.

CVE-2026-39813: Critical Path Traversal in FortiSandbox Allows Privilege Escalation
CVE-2026-39813 is a critical (CVSS 9.1) CWE-24 path traversal flaw in Fortinet FortiSandbox 4.4.x and 5.0.x that lets unauthenticated remote attackers escalate privileges via crafted HTTP requests.

Apache ActiveMQ Broker, Jolokia/Spring XML authenticated RCE
An improper input validation and code injection vulnerability in Apache ActiveMQ Classic lets an authenticated attacker achieve remote code execution on the broker JVM. ActiveMQ exposes the Jolokia JMX-HTTP bridge at /api/jolokia/ on the web console, and the default Jolokia access policy permits exec operations on all ActiveMQ MBeans, including BrokerService.addNetworkConnector and BrokerService.addConnector. An attacker can invoke these with a crafted discovery URI that drives the VM transport's brokerConfig parameter to load a remote Spring XML application context, whose singleton beans are instantiated before configuration validation, executing arbitrary code. This affects Apache ActiveMQ before 5.19.4 and from 6.0.0 before 6.2.3.

Citrix NetScaler ADC and Gateway, unauthenticated out-of-bounds read in SAML IdP (memory overread)
Insufficient input validation in Citrix NetScaler ADC and NetScaler Gateway, when the appliance is configured as a SAML Identity Provider, leads to a memory overread. A remote, unauthenticated attacker can read sensitive information from the appliance's memory, including, under some conditions, active session material. Default configurations are not affected. CISA added the flaw to its Known Exploited Vulnerabilities catalog following large-scale exploitation.