GitLab has patched a critical flaw that lets unauthenticated attackers delete public projects and user data. The...
proof-of-concept
TL;DR A researcher published proof-of-concept exploit code for CVE-2026-52929, a Linux kernel SCTP flaw rated CVSS 7.5....
TL;DR Microsoft patched CVE-2026-47301, an elevation of privilege flaw in Configuration Manager (SCCM). A researcher published proof-of-concept...
TL;DR Google patched CVE-2026-0075, an Android elevation of privilege flaw in ContactsProvider2. The bug can expose the...
TL;DR A researcher released proof-of-concept exploit code for CVE-2026-68138, a race condition in the Linux kernel traffic-control...
TL;DR A GeoServer unauthenticated SQL injection flaw is under active attack. It lives in the jsonArrayContains filter...
TL;DR Microsoft patched CVE-2026-66804, an elevation of privilege flaw in the Windows Cross Device Service. A standard...
TL;DR CISA added CVE-2025-62593 to its Known Exploited Vulnerabilities catalog. The flaw is a code injection bug...
TL;DR A researcher published a proof-of-concept exploit for a Linux kernel AF_PACKET race condition. The flaw enables...
Researchers at watchTowr published a working exploit for a Citrix NetScaler RCE flaw this week. The bug,...
TL;DR A researcher published full technical details and working proof-of-concept exploit code for CVE-2026-64582. The flaw is...
TL;DR Rapid7 has published a technical analysis and a working proof-of-concept for CVE-2026-55040. The flaw is a...
TL;DR A researcher has published a public PoC called ShieldBreak. It bypasses Microsoft’s July patch for the...
TL;DR Researchers published full details and a proof-of-concept tool for CVE-2026-27912, called ResetNightmare. The flaw sits in...
TL;DR Apple has patched a serious macOS kernel vulnerability tracked as CVE-2026-39868. An unprivileged app can corrupt...
TL;DR Apple has patched a macOS privilege escalation flaw tracked as CVE-2026-39875. A malicious app can chain...
TL;DR: Researchers at depthfirst released a working proof-of-concept for a GitLab RCE that runs commands as the...
TL;DR: A public proof-of-concept now targets CVE-2026-42530, an NGINX HTTP/3 RCE flaw rated CVSS 9.2. The use-after-free...
TL;DR: A public proof-of-concept now targets CVE-2026-66373, a Redis RCE flaw in the RESTORE command. The double-free...
TL;DR Researchers have published full technical details and working proof-of-concept code for Certighost, tracked as CVE-2026-54121. The...
TL;DR A researcher known as Pixis has published full details and proof-of-concept code for CVE-2026-50502. The flaw...
TL;DR: A public proof-of-concept now targets CVE-2026-42533, an NGINX heap overflow rated CVSS 9.2. The bug lets...