Security Vulnerabilities

The latest Security Vulnerabilities

NewsSecurity Vulnerabilities

Critical Vulnerability in Palo Alto PAN-OS (CVE-2026-0300)

– Palo Alto has published a security advisory addressing a critical vulnerability affecting PAN-OS. This vulnerability allows an unauthenticated attacker to execute arbitrary code with root privileges.

Read More
NewsSecurity Vulnerabilities

Cisco Enterprise Chat and Email Lite Agent File Upload Vulnerability (CVE-2026-20172)

– A vulnerability in the Lite Agent feature of Cisco Enterprise Chat and Email (ECE) could allow an authenticated, remote attacker to conduct browser-based attacks.

Read More
NewsSecurity Vulnerabilities

Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerabilities

– Multiple vulnerabilities in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to conduct cross-site scripting (XSS) attacks against a user of the interface.

Read More
NewsSecurity Vulnerabilities

Totolink N300RH Password buffer overflow vulnerability (CVE-2026-7747)

– A vulnerability, which was classified as critical, has been found in Totolink N300RH 3.2.4-B20220812.

Read More
NewsSecurity Vulnerabilities

Open5GS denial of service vulnerability (CVE-2026-7535)

– A vulnerability was found in Open5GS up to 2.7.7.

Read More
NewsSecurity Vulnerabilities

Oracle VirtualBox SoundBlaster 16 Race Condition Local Privilege Escalation Vulnerability (CVE-2026-35230)

– This vulnerability allows local attackers to escalate privileges on affected installations of Oracle VirtualBox.

Read More
NewsSecurity Vulnerabilities

Delta Electronics ASDA-Soft PAR File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability (CVE-2026-5726)

– This vulnerability allows remote attackers to execute arbitrary code on affected installations of Delta Electronics ASDA-Soft.

Read More
NewsSecurity Vulnerabilities

Docker Desktop Enhanced Container Isolation Exposed Dangerous Function Local Privilege Escalation Vulnerability (CVE-2026-6406)

– This vulnerability allows local attackers to escalate privileges on affected installations of Docker Desktop.

Read More
NewsSecurity Vulnerabilities

Cortex XSOAR: Improper Verification of Cryptographic Signature in Microsoft Teams integration (CVE-2026-0234)

CVE number = CVE-2026-0234 An improper verification of cryptographic signature vulnerability exists in Cortex XSOAR and Cortex XSIAM platforms during

Read More
NewsSecurity Vulnerabilities

Ongoing campaign exploiting vulnerabilities in Cisco VPN devices

– An attacker attributed to ArcaneDoor campaign has exploited CVE-2025-20333, CVE-2025-20362, and CVE-2025-20363 to install a sophisticated bootkit for persistent stealthy access to affected devices.

Read More