Skip to main content

Coverage

Vulnerabilities

1230 articles on vulnerability disclosures and exploits

Advertisement

HIGH
Vulnerabilities

CVE-2026-59346: VMware Workstation & Fusion RCE Patch

Broadcom patches critical arbitrary code execution flaws (CVE-2026-59346, CVE-2026-59347) in VMware Workstation and Fusion, impacting host systems from compromised VMs.

Runtime Rebel Intel
4 min read · Sep 6, 2026
HIGH
Vulnerabilities

CrowdStrike Falcon Zero-Day 'FalconFlank' Grants SYSTEM Privileges

A newly disclosed zero-day, 'FalconFlank,' abuses CrowdStrike Falcon's macro remediation to grant SYSTEM privileges on Windows systems.

Runtime Rebel Intel
4 min read · Sep 6, 2026
MikroTik RouterOS Unauthenticated SSH Exploit: Critical Advisory
CRITICAL
Vulnerabilities

MikroTik RouterOS Unauthenticated SSH Exploit: Critical Advisory

Attackers are exploiting a critical vulnerability in MikroTik RouterOS via internet-exposed SSH to gain full administrative control without authentication.

Runtime Rebel Intel
4 min read · Sep 6, 2026
MEDIUM
Identity & Access

39 Methods Compromise Passkey Authentication: Threat Analysis

Discover 39 published methods compromising passkey authentication, focusing on ecosystem flaws, UI manipulation, and enrollment abuse.

Runtime Rebel Intel
4 min read · Sep 6, 2026
Zero-Day Exploitation: StyleSmuggler RCE in Magento, Adobe Commerce
CRITICAL
Vulnerabilities

Zero-Day Exploitation: StyleSmuggler RCE in Magento, Adobe Commerce

Attackers are exploiting an unpatched zero-day (StyleSmuggler) in Magento Open Source and Adobe Commerce for unauthenticated RCE, installing backdoors.

Runtime Rebel Intel
4 min read · Sep 6, 2026
CVE-2026-63077: JetBrains Cadence Breach Exposes Credentials
CRITICAL
Data Breach

CVE-2026-63077: JetBrains Cadence Breach Exposes Credentials

JetBrains Cadence suffered a data breach via unpatched TeamCity (CVE-2026-63077), exposing AWS credentials, source code, and user data. Immediate action required.

Runtime Rebel Intel
4 min read · Sep 5, 2026
SonicWall SMA 1000 Zero-Days: Unauthenticated RCE Explained
CRITICAL
Vulnerabilities

SonicWall SMA 1000 Zero-Days: Unauthenticated RCE Explained

Zero-day vulnerabilities in SonicWall SMA 1000 series appliances enable unauthenticated remote code execution, posing critical risks to organizations.

Runtime Rebel Intel
4 min read · Sep 5, 2026
AI's Impact on Vulnerability Discovery & Vendor Readiness
INFO
Threat Intel

AI's Impact on Vulnerability Discovery & Vendor Readiness

AI-driven vulnerability discovery is overwhelming software vendors, exposing secure-by-design failures and challenging traditional disclosure models.

Runtime Rebel Intel
4 min read · Sep 5, 2026
CRITICAL
Vulnerabilities

CVE-2026-19490: Citrix NetScaler Auth Bypass Under Attack

Critical Citrix NetScaler authentication bypass (CVE-2026-19490) is actively exploited in the wild, allowing remote unprivileged access.

Runtime Rebel Intel
4 min read · Sep 5, 2026
Recorded Future's Automated Signatures Combat AI Exploits
INFO
Threat Intel

Recorded Future's Automated Signatures Combat AI Exploits

Recorded Future launches Automated Signature Creation to rapidly detect and prioritize vulnerabilities, closing the gap against AI-accelerated exploitation.

Runtime Rebel Intel
4 min read · Sep 4, 2026
HIGH
Threat Intel

Exchange Exploit, Dropbox Breach, & Cloud Phishing Campaigns

SecurityWeek's roundup highlights a critical Exchange Server exploit, Dropbox account compromises, and cloud phishing. Urgent action is advised.

Runtime Rebel Intel
5 min read · Sep 4, 2026
HIGH
Vulnerabilities

Voting System Vulnerability: Ballot Order Correlation Risk

A voting system vulnerability, nearly four years old, enables ballot order recovery.

Runtime Rebel Intel
4 min read · Sep 4, 2026
HIGH
Vulnerabilities

CVE-2026-6471: PostgreSQL Takeover via Logical Decoding Flaw

CVE-2026-6471, a 12-year-old PostgreSQL vulnerability, allows attackers with low replication privileges to achieve RCE and full database server takeover.

Runtime Rebel Intel
4 min read · Sep 4, 2026
CRITICAL
Vulnerabilities

Chrome Zero-Day CVE-2026-85046 Actively Exploited: Patch Now

Google released an urgent update for a critical Chrome zero-day, CVE-2026-85046, actively exploited in V8 engine type confusion attacks.

Runtime Rebel Intel
4 min read · Sep 4, 2026
WordPress RCE Exploited via CVE-2026-14894 & CVE-2026-32475
CRITICAL
Vulnerabilities

WordPress RCE Exploited via CVE-2026-14894 & CVE-2026-32475

Attackers exploit critical RCE flaws in WordPress Super Forms (CVE-2026-14894) and Elementor Pro (CVE-2026-32475) to deploy web shells and seize sites.

Runtime Rebel Intel
4 min read · Sep 4, 2026
Cloudflare Enhances Vulnerability Management with AI & Context
INFO
Threat Intel

Cloudflare Enhances Vulnerability Management with AI & Context

Cloudflare introduces a new service leveraging AI and real-world operational context to prioritize and remediate vulnerabilities in customer codebases.

Runtime Rebel Intel
4 min read · Sep 4, 2026
H1 2026 Malware & Vulnerability Trends: AI Impact & Evasion
HIGH
Vulnerabilities

H1 2026 Malware & Vulnerability Trends: AI Impact & Evasion

Analysis of H1 2026 malware and vulnerability trends, highlighting AI-assisted exploit development and adversary use of legitimate tools for evasion.

Runtime Rebel Intel
4 min read · Sep 3, 2026
CRITICAL
Vulnerabilities

CVE-2026-73749: HPE ArubaOS-CX RCE Flaw Patched

HPE patches a critical remote code execution flaw, CVE-2026-73749, in ArubaOS-CX switches. Unauthenticated attackers can exploit a buffer overflow.

Runtime Rebel Intel
3 min read · Sep 3, 2026
Critical Cisco Nexus 9000 RCE (CVE-2026-20212) & IOS XR Hardening
HIGH
Vulnerabilities

Critical Cisco Nexus 9000 RCE (CVE-2026-20212) & IOS XR Hardening

Cisco addresses a critical RCE flaw (CVE-2026-20212) in Nexus 9000 switches, alongside significant IOS XR hardening updates.

Runtime Rebel Intel
5 min read · Sep 3, 2026
HIGH
Vulnerabilities

Plex Media Server & Desktop: Patch Critical Security Flaws

Plex advises users to immediately update Plex Media Server to v1.43.3 and Plex Desktop to v1.115.0 to resolve multiple undisclosed security vulnerabilities.

Runtime Rebel Intel
4 min read · Sep 3, 2026
AI Vulnerability Surge: Enterprise Security Strategies
INFO
Threat Intel

AI Vulnerability Surge: Enterprise Security Strategies

New research suggests the anticipated increase in AI vulnerabilities can be managed by enterprise security teams with effective strategies.

Runtime Rebel Intel
4 min read · Sep 3, 2026
Google, Anthropic, and OpenAI Launch Cyber AI Models and Safeguards
INFO
Threat Intel

Google, Anthropic, and OpenAI Launch Cyber AI Models and Safeguards

Google, Anthropic, and OpenAI unveil advanced cybersecurity AI models like Gemini 3.8 Flash Cyber, focusing on defense and strict access controls.

Runtime Rebel Intel
3 min read · Sep 3, 2026
CRITICAL
Vulnerabilities

CVE-2026-83548: SonicWall SMA1000 SSRF Under Active Exploitation

A critical server-side request forgery (SSRF) vulnerability, CVE-2026-83548, in SonicWall SMA1000 Appliances is under active exploitation.

Runtime Rebel Intel
4 min read · Sep 2, 2026
CRITICAL
Vulnerabilities

CVE-2026-9586: Sangoma Switchvox RCE via SQL Injection

Sangoma Switchvox is affected by CVE-2026-9586, an unauthenticated remote SQL injection vulnerability enabling RCE, with active exploitation confirmed.

Runtime Rebel Intel
4 min read · Sep 2, 2026