91ŃÇÉ«

Skip to main content Skip to local navigation
Home » Category: 'Vulnerabilities'

Vulnerabilities

WordPress RCE Vulnerability (CVE-2026-63030)

A recently discovered vulnerability (CVE-2026-63030) that affects WordPress Core and allow an unauthenticated remote attacker to achieve remote code execution (RCE). Severity level:CVSS Score: 9.8/Critical. Description: WordPress is one of the most widely deployed content management systems, making vulnerabilities in its core software potentially significant for organizations operating public-facing websites. CVE-2026-63030 is a critical REST […]

Zoom Workplace for Windows - Improper Input Validation (CVE-2026-53412)

A recently disclosed vulnerability (CVE-2026-53412) that affects Zoom Workplace for Windows and Zoom Workplace VDI Client for Windows and may allow an unauthenticated remote attacker to take over a user account via network access. Severity level:CVSS Score: 9.8/Critical. Description: CVE-2026-53412 is a critical vulnerability caused by improper input validation in Zoom Workplace for Windows and […]

Linux kernel vulnerability (CVE-2026-43503)

A recently disclosed vulnerability (CVE-2026-43503), also known as DirtyClone, affects the Linux kernel and may allow a local unprivileged user to gain root privileges on vulnerable systems. Severity level:CVSS Score: 8.8/High. Description: CVE-2026-43503 (DirtyClone) is a high-severity Linux kernel privilege escalation vulnerability caused by improper handling of shared memory fragments in the networking subsystem. A […]

Oracle PeopleSoft Remote Code Execution Vulnerability (CVE-2026-35273)

A recently disclosed vulnerability (CVE‑2026‑35273) affects Oracle PeopleSoft Enterprise PeopleTools and may allow a remote, unauthenticated attacker to execute arbitrary code and take full control of affected systems. Severity level:CVSS Score: 9.8/Critical. Description: CVE‑2026‑35273 is a critical vulnerability in the Updates Environment Management component of PeopleSoft Enterprise PeopleTools. The flaw allows an unauthenticated attacker with […]

Windows Netlogon RCE Vulnerability (CVE-2026-41089)

A recently discovered critical vulnerability (CVE‑2026‑41089) affects Microsoft Windows Server and may allow a remote, unauthenticated attacker to execute arbitrary code on affected systems by targeting the Netlogon service. Severity level:CVSS Score: 9.8/Critical. Description: CVE‑2026‑41089 is a stack‑based buffer overflow vulnerability in the Windows Netlogon service. The flaw occurs due to improper handling of specially […]

7-Zip Heap Buffer Overflow (CVE-2026-48095)

A recently disclosed vulnerability (CVE‑2026‑48095) affects 7-Zip and may allow a remote attacker to execute arbitrary code on vulnerable systems by tricking the users into opening a specially crafted archive file.Severity level:CVSS Score: 8.8/High.Description:CVE‑2026‑48095 is a heap buffer overflow in 7‑Zip’s NTFS handler caused by improper memory allocation when processing crafted archive data. Opening a […]

Linux Kernel Local root Privilege Escalation (CVE-2026-46333)

A recently discovered vulnerability (CVE‑2026‑46333) affects the Linux kernel and may allow a local, unprivileged attacker to access sensitive files and escalate privileges to root, potentially leading to full system compromise.Severity level:CVSS Score: 7.1/High.Description:CVE‑2026‑46333 is a race condition vulnerability in the Linux kernel’s _ptrace_may_access() function caused by improper handling of process state during termination. When […]

Apache HTTP Server Vulnerability (CVE-2026-23918)

Apache has released a security update to address a vulnerability (CVE‑2026‑23918) in Apache HTTP Server that may result in denial‑of‑service and potential remote code execution under specific configurations.Severity level:CVSS Score: 8.8/High.Description:CVE‑2026‑23918 is a double‑free vulnerability in the mod_http2 module of Apache HTTP Server that occurs during HTTP/2 stream handling. A specially crafted sequence of HTTP/2 […]

Linux Kernel Local Privilege Escalation (CVE-2026-31431)

A recently disclosed vulnerability (CVE‑2026‑31431), commonly referred to as “Copy Fail”, affects the Linux kernel and may allow a local, unprivileged attacker to escalate privileges and gain full root access on affected systems. Severity level:CVSS Score: 7.8/High. Description:CVE‑2026‑31431 is a local privilege escalation vulnerability caused by a logic flaw in the Linux kernel’s cryptographic subsystem, […]

cPanel Authentication bypass Vulnerability (CVE-2026-41940)

A critical security vulnerability (CVE-2026-41940) has been identified in cPanel, Web Host Manager (WHM) and WP Squared which may allow unauthenticated attackers to completely compromise affected systems through an authentication bypass in the login process.Severity level:CVSS Score: 9.8/Critical.Description:CVE‑2026‑41940 is a critical authentication bypass vulnerability in cPanel, WHM, and WP Squared caused by improper session handling […]