TL;DR A Linux kernel CPU timer flaw lets a local user reach root. Tracked as CVE-2026-64560, it...
privilege escalation
TL;DR Progress released an August 2026 bulletin for MarkLogic Server. It fixes ten MarkLogic Server vulnerabilities, several...
TL;DR Researchers published full details and a proof-of-concept tool for CVE-2026-27912, called ResetNightmare. The flaw sits in...
TL;DR Two Accenture researchers showed that plugging a USB device into Windows can hand an attacker SYSTEM....
TL;DR A critical flaw lets a low-privileged Rancher user seize full control of the platform. Tracked as...
TL;DR Red Hat disclosed a critical privilege escalation flaw in Advanced Cluster Management (ACM) for Kubernetes. Tracked...
TL;DR A Linux kernel eventpoll flaw lets a local user climb to root. Tracked as CVE-2026-43074, it...
TL;DR A Linux kernel use-after-free in SCTP, tracked as CVE-2026-64564, allows local attackers to gain root. Researchers...
TL;DR WSO2 disclosed four critical vulnerabilities across its API and identity products. Several are WSO2 account takeover...
TL;DR: Phoenix Contact CHARX vulnerabilities now number 20 across the SEC-3xxx EV charging controllers. Several rate critical,...
TL;DR Security researchers have detailed a critical Linux suTrap local privilege escalation flaw. This interactive su TIOCSTI...
TL;DR A new Linux kernel vulnerability, tracked as CVE-2026-53264, lets a local user run arbitrary code and...
TL;DR A researcher has published full details and a working proof-of-concept for a macOS privilege escalation bug....
TL;DR: cPanel patched a cPanel root SQL execution flaw tracked as CVE-2026-58048, rated CVSS 9.4. A second,...
TL;DR Apple has patched a macOS privilege escalation flaw tracked as CVE-2026-39875. A malicious app can chain...
A researcher has published full technical details and working proof-of-concept code for a Linux kernel vulnerability named...
TL;DR The OVSwrap local root flaw lets an unprivileged user gain root on many Linux systems. It...
TL;DR Progress fixed five Kemp LoadMaster vulnerabilities in a July 2026 bulletin. Three allow OS command injection,...
TL;DR Qualys disclosed RefluXFS on July 22, 2026. Tracked as CVE-2026-64600, it is a Linux kernel XFS...
TL;DR The Exim team published advisory EXIM-Security-2026-06-22.1 on July 22, 2026. It describes an Exim vulnerability that...
TL;DR SolarWinds fixed 15 critical SolarWinds Serv-U vulnerabilities on July 21, 2026. They allow privilege escalation, account...
TL;DR Qualys found a snap-confine privilege escalation flaw, tracked as CVE-2026-8933. It lets any local user reach...