TL;DR Red Hat disclosed three high-severity flaws in its Advanced Cluster Management and Multicluster Engine for Kubernetes....
privilege escalation
CVE-2026-20315 & CVE-2026-20317: Cisco Secure Workload Auth Bypass, Privilege Escalation Hit CVSS 10
CVE-2026-20315 & CVE-2026-20317: Cisco Secure Workload Auth Bypass, Privilege Escalation Hit CVSS 10
TL;DR Cisco released hardening updates for Secure Workload on August 19, 2026. The Cisco Secure Workload authentication...
HashiCorp disclosed a Vault Secrets Operator vulnerability this week. Then, the bug, tracked as CVE-2026-8715, scores a...
TL;DR Red Hat disclosed three critical flaws in its multicluster Kubernetes products. The most severe, CVE-2026-66792, scores...
TL;DR BeyondTrust patched two high-severity flaws in Endpoint Privilege Management for Windows. This BeyondTrust vulnerability pair can...
TL;DR A researcher released proof-of-concept exploit code for CVE-2026-68138, a race condition in the Linux kernel traffic-control...
Red Hat patched five critical bugs in Advanced Cluster Management this week. Two of them allow RHACM...
TL;DR A researcher published a proof-of-concept exploit for a Linux kernel AF_PACKET race condition. The flaw enables...
TL;DR A researcher published full technical details and working proof-of-concept exploit code for CVE-2026-64582. The flaw is...
TL;DR Apple patched a flaw that let a local app gain root privileges through the mediaremoted service....
TL;DR A researcher has published a public PoC called ShieldBreak. It bypasses Microsoft’s July patch for the...
TL;DR A Linux kernel CPU timer flaw lets a local user reach root. Tracked as CVE-2026-64560, it...
TL;DR Progress released an August 2026 bulletin for MarkLogic Server. It fixes ten MarkLogic Server vulnerabilities, several...
TL;DR Researchers published full details and a proof-of-concept tool for CVE-2026-27912, called ResetNightmare. The flaw sits in...
TL;DR Two Accenture researchers showed that plugging a USB device into Windows can hand an attacker SYSTEM....
TL;DR A critical flaw lets a low-privileged Rancher user seize full control of the platform. Tracked as...
TL;DR Red Hat disclosed a critical privilege escalation flaw in Advanced Cluster Management (ACM) for Kubernetes. Tracked...
TL;DR A Linux kernel eventpoll flaw lets a local user climb to root. Tracked as CVE-2026-43074, it...
TL;DR A Linux kernel use-after-free in SCTP, tracked as CVE-2026-64564, allows local attackers to gain root. Researchers...
TL;DR WSO2 disclosed four critical vulnerabilities across its API and identity products. Several are WSO2 account takeover...
TL;DR: Phoenix Contact CHARX vulnerabilities now number 20 across the SEC-3xxx EV charging controllers. Several rate critical,...
TL;DR Security researchers have detailed a critical Linux suTrap local privilege escalation flaw. This interactive su TIOCSTI...