TL;DR CVE-2026-77806 is a CVSS 9.8 unauthenticated RCE in the SPIP CMS. It affects all versions before...
Remote Code Execution
TL;DR Apache CloudStack shipped releases 4.20.3.1 and 4.22.1.1. They fix 20 CVEs across the platform. The most...
TL;DR IBM patched a large batch of IBM AIX vulnerabilities on August 15, 2026. Many allow remote...
TL;DR CVE-2026-32475 is a CVSS 9.8 unauthenticated arbitrary file upload flaw in Elementor Pro. It affects an...
TL;DR CVE-2026-77647 is a CVSS 9.8 unauthenticated remote code execution flaw in the SPIP CMS. It affects...
Update: Microsoft updated its safety alert on August 21, 2026. Initially, the report marked the bug as...
TL;DR VMware disclosed seven Spring GraphQL vulnerabilities and related Spring Cloud flaws on August 20, 2026. All...
TL;DR Dell patched three flaws in its PowerStore T storage family. The most severe, CVE-2026-67271, scores a...
TL;DR The maintainers of vm2 patched three critical flaws on August 17, 2026. The most severe, CVE-2026-47686,...
TL;DR Splunk fixed 17 vulnerabilities across its apps and add-ons on August 19, 2026. The worst, CVE-2026-76404,...
TL;DR CERT Polska reports active exploitation of a Zimbra unauthenticated remote code execution flaw, tracked as CVE-2026-73570....
IBM patched 18 flaws in Db2 Mirror for i this week. The worst bug lets a remote...
TL;DR Security researchers discovered multiple severe vulnerabilities in IBM Documentation Offline. Most notably, a critical IBM remote...
TL;DR A critical flaw in Forminator Forms puts more than 600,000 WordPress sites at risk. Tracked as...
TL;DR CISA added CVE-2025-62593 to its Known Exploited Vulnerabilities catalog. The flaw is a code injection bug...
Red Hat patched five critical bugs in Advanced Cluster Management this week. Two of them allow RHACM...
Researchers at watchTowr published a working exploit for a Citrix NetScaler RCE flaw this week. The bug,...
Roundcube shipped two security updates this week. Also, versions 1.6.18 and 1.7.3 close eleven separate bugs. The...
TL;DR WordPress released version 7.0.4 on August 12, 2026, as a security-only update. It fixes CVE-2026-65640, an...
TL;DR Researchers at V12 Security published a MariaDB remote code execution chain. It runs commands as the...
TL;DR Dell patched two critical flaws in Virtual Storage Integrator (VSI) for VMware vSphere Client. The worst,...
TL;DR Siemens has disclosed CVE-2026-58115, a maximum-severity flaw in SIMATIC IoT2050 Advanced devices. The bug scores a...