Security Vulnerabilities

The latest Security Vulnerabilities

NewsSecurity Vulnerabilities

BBC says TfL hack in 2024 affected around 10 million

– The BBC has revealed that around 10 million people had their data stolen during the 2024 hack of Transport for London (TfL), making it one of the largest cyberattacks in British history.

Read More
NewsSecurity Vulnerabilities

Cisco Catalyst SD-WAN – Multiple Vulnerabilities

CVE numbers – CVE-2026-20122 and CVE-2026-20126 and CVE-2026-20128 and CVE-2026-20129 and CVE-2026-20133. These vulnerabilities affect Cisco Catalyst SD-WAN Manager, regardless

Read More
NewsSecurity Vulnerabilities

Hewlett Packard Enterprise AutoPass License Server Authentication Bypass Vulnerability (CVE-2026-23600)

– This vulnerability allows remote attackers to bypass authentication on affected installations of Hewlett Packard Enterprise AutoPass License Server.

Read More
NewsSecurity Vulnerabilities

Docker Desktop for Mac Docker Model Runner Exposed Dangerous Function Denial-of-Service Vulnerability (CVE-2026-28400)

– This vulnerability allows local attackers to create a denial-of-service condition on affected installations of Docker Desktop.

Read More
NewsSecurity Vulnerabilities

IceWarp collaboration Directory Traversal Information Disclosure Vulnerability (CVE-2026-2493)

– This vulnerability allows remote attackers to disclose sensitive information on affected installations of IceWarp.

Read More
NewsSecurity Vulnerabilities

Ubiquiti Networks AI Pro Discovery Protocol Missing Encryption Protocol Downgrade Vulnerability (CVE-2026-21633)

– This vulnerability allows network-adjacent attackers to downgrade the communication protocol on affected installations of Ubiquiti Networks AI Pro.

Read More
NewsSecurity Vulnerabilities

Docker Desktop grpcfuse Kernel Module Out-Of-Bounds Read Information Disclosure Vulnerability (CVE-2026-2664)

– This vulnerability allows local attackers to disclose sensitive information on affected installations of Docker Desktop.

Read More
NewsSecurity Vulnerabilities

Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability (CVE-2026-20127)

– A vulnerability in the peering authentication in Cisco Catalyst SD-WAN Controller, formerly SD-WAN vSmart, and Cisco Catalyst SD-WAN Manager, formerly SD-WAN vManage, could allow an unauthenticated, remote attacker to bypass authentication and obtain administrative privileges on an affected system.

Read More
NewsSecurity Vulnerabilities

Siemens SINEC NMS Uncontrolled Search Path Element Local Privilege Escalation Vulnerability (CVE-2026-25656)

– This vulnerability allows local attackers to escalate privileges on affected installations of Siemens SINEC NMS.

Read More
NewsSecurity Vulnerabilities

RustDesk Client for Windows Transfer File Link Following Information Disclosure Vulnerability (CVE-2026-2490)

– This vulnerability allows local attackers to disclose sensitive information on affected installations of RustDesk Client for Windows.

Read More