Attackers are actively targeting JetBrains TeamCity servers in the wild. The TeamCity CVE-2026-63077 vulnerability allows unauthenticated remote...
Vulnerability Report
TL;DR CVE-2026-52912 is a use-after-free flaw in the Linux kernel’s netfilter nf_queue code. It carries a CVSS...
GitLab has patched a critical flaw that lets unauthenticated attackers delete public projects and user data. The...
A critical flaw in the EverShop software allows complete unauthenticated account takeover attacks. Tracked as CVE-2026-72843, this...
TL;DR CVE-2026-77806 is a CVSS 9.8 unauthenticated RCE in the SPIP CMS. It affects all versions before...
TL;DR VMware disclosed four Spring vulnerabilities on August 20, 2026. All rate as HIGH severity. One hits...
TL;DR CVE-2026-75501 is a missing authentication flaw in the Calix GS7 XGS GS5239XG router. Its UPnP service...
TL;DR CVE-2026-19598 is a CVSS 9.8 privilege escalation flaw in the Pods WordPress plugin. It lets unauthenticated...
TL;DR Apache CloudStack shipped releases 4.20.3.1 and 4.22.1.1. They fix 20 CVEs across the platform. The most...
TL;DR IBM patched a large batch of IBM AIX vulnerabilities on August 15, 2026. Many allow remote...
TL;DR A uutils coreutils vulnerability affects the stdbuf tool in the Rust rewrite of GNU coreutils. By...
TL;DR CERT/CC disclosed five RDK-B WebUI vulnerabilities on August 19, 2026. The worst flaw lets a remote,...
TL;DR Keycloak 26.7.2 fixes five flaws, released on August 19, 2026. The most severe, CVE-2026-18963, allows a...
TL;DR Red Hat disclosed three high-severity flaws that enable privilege escalation. The worst, CVE-2026-67567 (CVSS 9.9), hits...
TL;DR CVE-2026-32475 is a CVSS 9.8 unauthenticated arbitrary file upload flaw in Elementor Pro. It affects an...
TL;DR CVE-2026-77647 is a CVSS 9.8 unauthenticated remote code execution flaw in the SPIP CMS. It affects...
TL;DR TP-Link patched three Omada gateway vulnerabilities. The most severe, CVE-2026-19586, is a pre-authentication OS command injection...
Update: Microsoft updated its safety alert on August 21, 2026. Initially, the report marked the bug as...
TL;DR VMware disclosed four Spring Security vulnerabilities. The most severe, CVE-2026-59270, rates CVSS 9.4 (CRITICAL). Its embedded...
TL;DR CVE-2026-77176 is a CVSS 8.1 flaw in Kata Containers genpolicy. A malicious operator can mount arbitrary...
TL;DR A researcher published proof-of-concept exploit code for CVE-2026-52929, a Linux kernel SCTP flaw rated CVSS 7.5....
TL;DR VMware disclosed seven Spring GraphQL vulnerabilities and related Spring Cloud flaws on August 20, 2026. All...