Skip to main content

Coverage

Vulnerabilities

903 articles on vulnerability disclosures and exploits

Advertisement

VU
CRITICAL
Vulnerabilities

ABB B&R Automation Studio <6.5: Multiple Critical SQLite Vulnerabilities

Critical SQLite vulnerabilities in ABB B&R Automation Studio <6.5 expose ICS to RCE, data exposure, and unauthorized access. Update to version 6.5 immediately.

Runtime Rebel Intel
4 min read·May 23, 2026
VU
HIGH
Vulnerabilities

CVE-2026-9082: Drupal Core SQL Injection Under Active Exploitation

CISA adds CVE-2026-9082, a critical Drupal Core SQL Injection vulnerability, to KEV Catalog due to active exploitation. Immediate patching required for all organizations.

Runtime Rebel Intel
4 min read·May 23, 2026
VU
CRITICAL
Vulnerabilities

CVE-2026-9082: Drupal Under Active Exploitation – Patch Now

Critical Drupal vulnerability CVE-2026-9082 is actively exploited shortly after disclosure. Urgent patching is required to prevent compromise of thousands of websites.

Runtime Rebel Intel
4 min read·May 22, 2026
VU
HIGH
Vulnerabilities

Huawei AR2500 Exploitation: Industrial Router Flaw Analysis

An analysis of the Huawei AR2500 industrial router exploitation that triggered a major telecom outage and CISA's new KEV nomination process.

Runtime Rebel Intel
3 min read·May 22, 2026
VU
HIGH
Vulnerabilities

CVE-2023-41179: Trend Micro Apex One RCE Exploited in Attacks

Trend Micro patches CVE-2023-41179, a critical zero-day in Apex One and Worry-Free Business Security exploited to execute arbitrary commands on Windows systems.

Runtime Rebel Intel
3 min read·May 22, 2026
VU
CRITICAL
Vulnerabilities

Ubiquiti Patches Critical UniFi OS Command Injection Vulnerabilities

Ubiquiti has addressed three critical vulnerabilities (CVE-2024-42025, CVE-2024-42027, CVE-2024-42028) in UniFi OS that allow unauthenticated RCE via local networks.

Runtime Rebel Intel
3 min read·May 22, 2026
Bypassing Hardware Gates: Exploitability of Vulnerable Drivers
HIGH
Threat Intel

Bypassing Hardware Gates: Exploitability of Vulnerable Drivers

Technical analysis of how researchers bypass hardware-gating to exploit Windows kernel-mode drivers without physical devices in BYOVD attacks.

Runtime Rebel Intel
4 min read·May 22, 2026
VU
CRITICAL
Vulnerabilities

CVE-2026-34926: TrendAI Apex One Directory Traversal Exploit Analysis

TrendAI patches a critical zero-day directory traversal vulnerability (CVE-2026-34926) in Apex One on-premise currently exploited in the wild.

Runtime Rebel Intel
4 min read·May 22, 2026
CVE-2025-34291 & CVE-2023-41179: CISA Warns of Active Exploitation
CRITICAL
Vulnerabilities

CVE-2025-34291 & CVE-2023-41179: CISA Warns of Active Exploitation

CISA adds Langflow and Trend Micro Apex One vulnerabilities to KEV. Learn how to mitigate CVE-2025-34291 and CVE-2023-41179 to prevent active exploitation.

Runtime Rebel Intel
4 min read·May 22, 2026
Communicating AI's Impact on Vulnerability Discovery to Boards
INFO
Threat Intel

Communicating AI's Impact on Vulnerability Discovery to Boards

Security leaders must articulate AI-driven vulnerability trends and strategic resource needs to their boards, translating technical risks into business impact.

Runtime Rebel Intel
4 min read·May 22, 2026
VU
MEDIUM
Vulnerabilities

CVE-2022-4304: Hitachi Energy GMS600 Timing Side Channel Vulnerability

Hitachi Energy GMS600 versions 1.3.0-1.3.1 affected by CVE-2022-4304, an OpenSSL timing side channel leading to TLS decryption. Patch to 1.3.2 now.

Runtime Rebel Intel
4 min read·May 21, 2026
VU
MEDIUM
Vulnerabilities

ABB Terra AC Wallbox <=1.8.33 Buffer Overflows: Patch Now

CISA warns of three buffer overflow vulnerabilities (CVE-2025-10504, CVE-2025-12142, CVE-2025-12143) in ABB Terra AC Wallbox EV chargers, leading to potential remote

Runtime Rebel Intel
4 min read·May 21, 2026