Security Vulnerabilities

The latest Security Vulnerabilities

NewsSecurity Vulnerabilities

Docker Desktop grpcfuse Kernel Module Out-Of-Bounds Read Information Disclosure Vulnerability (CVE-2026-2664)

– This vulnerability allows local attackers to disclose sensitive information on affected installations of Docker Desktop.

Read More
NewsSecurity Vulnerabilities

Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability (CVE-2026-20127)

– A vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, and Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an unauthenticated, remote attacker to bypass authentication and obtain administrative privileges on an affected system.

Read More
NewsSecurity Vulnerabilities

Siemens SINEC NMS Uncontrolled Search Path Element Local Privilege Escalation Vulnerability (CVE-2026-25656)

– This vulnerability allows local attackers to escalate privileges on affected installations of Siemens SINEC NMS.

Read More
NewsSecurity Vulnerabilities

RustDesk Client for Windows Transfer File Link Following Information Disclosure Vulnerability (CVE-2026-2490)

– This vulnerability allows local attackers to disclose sensitive information on affected installations of RustDesk Client for Windows.

Read More
NewsSecurity Vulnerabilities

PDF-XChange Editor TrackerUpdate Uncontrolled Search Path Element Local Privilege Escalation Vulnerability (CVE-2026-2040)

– This vulnerability allows local attackers to escalate privileges on affected installations of PDF-XChange Editor.

Read More
NewsSecurity Vulnerabilities

Microsoft discloses privilege escalation vulnerability in Windows Admin Center (CVE-2026-26119)

– Improper authentication in Windows Admin Center allows an authorized attacker to elevate privileges over a network.

Read More
NewsSecurity Vulnerabilities

BeyondTrust critical pre-authentication remote code execution vulnerability (CVE-2026-1731)

– On February 10th 2026, a proof-of-concept exploit for CVE-2026-1731—a critical pre-authentication remote code execution flaw affecting BeyondTrust Remote Support and Privileged Remote Access—was published on GitHub.

Read More
NewsSecurity Vulnerabilities

Oracle VirtualBox VMSVGA Use-After-Free Local Privilege Escalation Vulnerability (CVE-2026-21955)

– This vulnerability allows local attackers to escalate privileges on affected installations of Oracle VirtualBox.

Read More
NewsSecurity Vulnerabilities

Oracle VirtualBox VMSVGA Heap-based Buffer Overflow Local Privilege Escalation Vulnerability (CVE-2026-21983)

– This vulnerability allows local attackers to escalate privileges on affected installations of Oracle VirtualBox.

Read More
NewsSecurity Vulnerabilities

Junos OS specifically crafted ‘show chassis’ command causes chassisd to crash (CVE-2025-60007)

– A NULL Pointer Dereference vulnerability in the chassis daemon (chassisd) of Juniper Networks Junos OS on MX, SRX and EX Series allows a local attacker with low privileges to cause a Denial-of-Service (DoS).

Read More