Skip to main content

Coverage

Vulnerabilities

903 articles on vulnerability disclosures and exploits

Advertisement

TH
HIGH
Threat Intel

AI-Powered Exploit Surge: Mitigating Automated Attack Development

Anthropic's Claude Security counters the emerging threat of AI-accelerated exploit generation, enhancing defense against novel vulnerabilities and attack vectors.

Runtime Rebel Intel
4 min read·May 1, 2026
VU
HIGH
Vulnerabilities

ABB AWIN Gateways Authentication Bypass and DoS Vulnerabilities

Critical vulnerabilities in ABB AWIN GW100 and GW120 gateways could allow unauthenticated attackers to reboot devices or extract sensitive configuration data.

Runtime Rebel Intel
3 min read·Apr 30, 2026
VU
HIGH
Vulnerabilities

ABB Symphony Plus Engineering: Fix PostgreSQL RCE Vulnerabilities

ABB Ability Symphony Plus Engineering is vulnerable to RCE via legacy PostgreSQL components. Learn how to mitigate CVE-2024-7348 and secure ICS networks.

Runtime Rebel Intel
3 min read·Apr 30, 2026
VU
CRITICAL
Vulnerabilities

CVE-2024-40766: Patch SonicWall SonicOS Improper Access Control

SonicWall urges immediate patching of CVE-2024-40766, a critical access control flaw in SonicOS affecting Gen 5, 6, and 7 firewalls.

Runtime Rebel Intel
3 min read·Apr 30, 2026
VU
MEDIUM
Vulnerabilities

KB5083769 Update Triggers Third-Party Backup Failures on Windows 11

The April KB5083769 update for Windows 11 24H2 and 25H2 causes failures in third-party backup software, creating significant disaster recovery risks.

Runtime Rebel Intel
4 min read·Apr 30, 2026
VU
HIGH
Vulnerabilities

CVE-2024-32866: Critical RCE in EnOcean SmartServer IoT Gateways

Researchers at Claroty discovered critical RCE and security bypass flaws in EnOcean SmartServer IoT gateways that expose smart buildings to remote takeover.

Runtime Rebel Intel
4 min read·Apr 30, 2026
VU
HIGH
Vulnerabilities

Google Gemini CLI Host Code Execution: Securing AI Developer Tools

Critical security flaw in Google Gemini CLI allows host code execution and supply chain attacks via malicious configurations. Learn how to mitigate.

Runtime Rebel Intel
4 min read·Apr 30, 2026
VU
CRITICAL
Vulnerabilities

CVE-2026-41940: Active Zero-Day Exploitation in cPanel and WHM

Critical zero-day CVE-2026-41940 in cPanel and WHM allows for authentication bypass. Learn about active exploitation, public PoCs, and essential patch guidance.

Runtime Rebel Intel
3 min read·Apr 30, 2026
MA
HIGH
Malware

Redtail Malware Exploiting CVE-2024-3400: Technical Analysis

Analysis of the Libredtail variant exploiting Palo Alto Networks CVE-2024-3400 to deploy crypto-miners and establish rootkit persistence.

Runtime Rebel Intel
3 min read·Apr 30, 2026
Gemini CLI Critical RCE Fix: Patching the @google/gemini-cli Flaw
CRITICAL
Vulnerabilities

Gemini CLI Critical RCE Fix: Patching the @google/gemini-cli Flaw

Google patches a CVSS 10.0 flaw in Gemini CLI tools that allowed unprivileged attackers to execute commands in CI/CD environments via malicious configurations.

Runtime Rebel Intel
3 min read·Apr 30, 2026
VU
HIGH
Vulnerabilities

WordPress Quick Page/Post Redirect Backdoor: Arbitrary Code Injection

A dormant backdoor in the Quick Page/Post Redirect WordPress plugin allowed arbitrary code injection for five years on over 70,000 sites. Learn mitigation.

Runtime Rebel Intel
5 min read·Apr 30, 2026
OpenEMR Flaws: Database Compromise, RCE, and Patient Data Theft Risks
CRITICAL
Vulnerabilities

OpenEMR Flaws: Database Compromise, RCE, and Patient Data Theft Risks

Analysis of 38 security flaws in OpenEMR, an EHR platform used by over 100,000 healthcare providers, enabling database compromise, RCE, and data theft.

Runtime Rebel Intel
4 min read·Apr 29, 2026