Skip to main content

Coverage

Vulnerabilities

903 articles on vulnerability disclosures and exploits

Advertisement

CVE-2026-42271: BerriAI LiteLLM RCE Exploited in the Wild
CRITICAL
Vulnerabilities

CVE-2026-42271: BerriAI LiteLLM RCE Exploited in the Wild

CISA warns of active exploitation of CVE-2026-42271 in BerriAI LiteLLM. This command injection flaw allows attackers to achieve RCE and compromise AI proxies.

Runtime Rebel Intel
3 min read·Jun 9, 2026
CVE-2024-24919: Check Point VPN Zero-Day Exploited by Qilin Affiliate
CRITICAL
Vulnerabilities

CVE-2024-24919: Check Point VPN Zero-Day Exploited by Qilin Affiliate

Check Point Security Gateway vulnerability CVE-2024-24919 is being exploited in the wild, enabling unauthenticated information disclosure and network access.

Runtime Rebel Intel
3 min read·Jun 9, 2026
CVE-2026-23111: Linux Kernel nf_tables LPE and Container Escape
HIGH
Vulnerabilities

CVE-2026-23111: Linux Kernel nf_tables LPE and Container Escape

A one-character use-after-free vulnerability in the Linux kernel nf_tables subsystem allows local root access and container escapes. Patch immediately.

Runtime Rebel Intel
4 min read·Jun 8, 2026
May 2026 CVE Landscape: Prioritize Remediation for High-Impact Threats
HIGH
Vulnerabilities

May 2026 CVE Landscape: Prioritize Remediation for High-Impact Threats

Analysis of the May 2026 CVE landscape, highlighting a 11% increase in high-impact vulnerabilities and critical risk scoring for security teams.

Runtime Rebel Intel
3 min read·Jun 8, 2026
TH
CRITICAL
Threat Intel

TeamPCP Campaign Update: Mini Shai-Hulud Framework Gains Adoption

Analysis of the TeamPCP supply chain campaign, the open-sourcing of the Mini Shai-Hulud framework, and its adoption by diverse threat actor groups in 2026.

Runtime Rebel Intel
4 min read·Jun 8, 2026
VU
CRITICAL
Vulnerabilities

Zcash Orchard Pool Logic Error Enables Infinite ZEC Minting

A critical vulnerability in the Zcash Orchard privacy pool allowed attackers to bypass validation and counterfeit ZEC via zero-knowledge proof flaws.

Runtime Rebel Intel
4 min read·Jun 8, 2026
VU
CRITICAL
Vulnerabilities

UniFi OS Root Access via CVE-2024-42029 Chain — Mitigation Guide

Exploit chain involving CVE-2024-42029, CVE-2024-42028, and CVE-2024-42027 allows unauthenticated root access to UniFi OS servers. Update to version 4.0.18.

Runtime Rebel Intel
3 min read·Jun 8, 2026
VU
CRITICAL
Vulnerabilities

Gogs 0.13.0 Patch: Fixing Critical CVE-2024-39930 RCE Vulnerability

Gogs has patched a critical zero-day vulnerability (CVE-2024-39930) in its built-in SSH server that enables unauthenticated remote code execution.

Runtime Rebel Intel
3 min read·Jun 8, 2026
CVE-2026-50751: Critical Check Point VPN Password Bypass Patch Guidance
CRITICAL
Vulnerabilities

CVE-2026-50751: Critical Check Point VPN Password Bypass Patch Guidance

Check Point warns of active exploitation of CVE-2026-50751, a critical logic flow flaw in IKEv1 VPN setups allowing unauthenticated password bypass.

Runtime Rebel Intel
3 min read·Jun 8, 2026
VU
INFO
Vulnerabilities

Anthropic Project Glasswing: AI Vulnerability Discovery Challenges

Anthropic's Project Glasswing identifies 23,000 potential vulnerabilities via the Mythos AI model, highlighting the massive gap between discovery and patching.

Runtime Rebel Intel
4 min read·Jun 8, 2026
VU
CRITICAL
Vulnerabilities

CVE-2024-24919: Qilin Ransomware Gang Exploits Check Point VPN Zero-Day

Check Point confirms that the Qilin ransomware group exploited CVE-2024-24919, a critical flaw in VPN gateways, to gain unauthorized network access.

Runtime Rebel Intel
3 min read·Jun 8, 2026
Mythos Threat Actor Analysis: Novel SAST Chain Exploitation Revealed
HIGH
Threat Intel

Mythos Threat Actor Analysis: Novel SAST Chain Exploitation Revealed

Technical analysis of the Mythos threat actor methodology, involving complex chaining of common software vulnerabilities to achieve deep system compromise.

Runtime Rebel Intel
4 min read·Jun 8, 2026