Blog
CVE-2026-85046 (CVSS 8.8): Google Chrome’s V8 Zero-Day Is Being Actively Exploited — Update All 3.45 Billion Users Immediately
CVE-2026-85046, a V8 type-confusion zero-day in Google Chrome, is actively exploited. CISA KEV deadline: 18 Sep 2026. Patch to Chrome 152.0.7977.82 now.
Read More →CVE-2026-19490 (CVSS 9.3): Citrix NetScaler Auth Bypass Now Under Active Attack — Patch Your Enterprise VPN Gateway Today
CVE-2026-19490 (CVSS 9.3) is a critical Citrix NetScaler authentication bypass now being actively exploited. Organisations running NetScaler as a Gateway or AAA server must patch to build 14.1-73.32 or 13.1-63.21…
Read More →CVE-2026-76657 & CVE-2026-76658 (CVSS 10.0): Twin Maximum-Severity HPE Fabric Composer Flaws Put Your Network Management Plane at Risk
Two CVSS 10.0 flaws in HPE Networking Fabric Composer let unauthenticated attackers gain full root control of your network management plane. CVE-2026-76657 bypasses API authentication; CVE-2026-76658 enables OS-level RCE via…
Read More →CVE-2026-20212 (CVSS 9.8): Critical Cisco Nexus 9000 Silicon One Flaw Opens AI Data Centre Backbone to Unauthenticated Root RCE
Cisco discloses CVE-2026-20212 (CVSS 9.8) in Nexus 9000 Silicon One switches: unauthenticated root RCE via TCP ports 43210/43211. 10 models, 45 NX-OS releases affected.
Read More →CISA Adds 7 Exploited CVEs: AI Gateways, VoIP Servers and Workflow Engines Under Active Attack — Your Action Plan
CISA added 7 flaws to KEV on Sept 2, 2026 — Kestra CVSS 10.0 auth bypass, LiteLLM MCP token bypass (Qilin ransomware chain), and Switchvox SQLi RCE. Patch now.
Read More →CVE-2026-83548 (CVSS 10.0) + CVE-2026-83549: SonicWall SMA 1000 Zero-Day Chain Enables Pre-Auth RCE — Patch Immediately
SonicWall confirms active exploitation of two SMA 1000 zero-days: CVSS 10.0 SSRF (CVE-2026-83548) chained with command injection (CVE-2026-83549) for pre-auth RCE on models 6210, 7210, 8200v.
Read More →CVE-2026-62911 (CVSS 8.1): 22,000 Exchange Servers Exposed as Pwn2Own RCE Chain Goes Public — Every Mailbox at Risk
CVE-2026-62911 lets unauthenticated attackers relay NTLM to Exchange MRSProxy and seize every mailbox. 21,899 servers remain unpatched. Apply SU9 (KB5121573) and enable EPA now.
Read More →CVE-2026-82329 (CVSS 9.8): Attackers Mint Admin Tokens in JFrog Artifactory Days After Disclosure — Your Software Supply Chain Is at Risk
CVE-2026-82329 (CVSS 9.8) lets unauthenticated attackers mint JFrog Artifactory admin tokens. Active exploitation confirmed Sept 1, 2026. Patch now or restrict access.
Read More →CVE-2026-0768 & CVE-2026-66066: AI Workflow and Rails Servers Under Active Attack — 360+ Intrusions Detected, Cloud Keys at Risk
Attackers exploit CVE-2026-0768 (CVSS 9.8) in Langflow and CVE-2026-66066 (CVSS 9.5) in Ruby on Rails, harvesting OpenAI, AWS credentials in a live 360+ intrusion campaign.
Read More →Fire Ant: China-Nexus APT Hijacks Cisco IOS XR Routers and TACACS+ Servers to Spy on Critical Networks
China-linked Fire Ant (UNC3886) plants TacTap credential-harvester on TACACS+ servers and BridgeAgent backdoor on Linux management hosts, turning Cisco IOS XR routers into espionage platforms.
Read More →