LiveThreat Vulnerabilities
// VULNERABILITY TRACKING

VULNERABILITY TRACKER

CVE tracking, CISA KEV alerts, and zero-day disclosures with third-party risk impact analysis.

Breaches Advisories Vulnerabilities 📡 RSS
Time: Severity: 2083 items
🛡️
CVE-2026-61979CVE-2026-15981CriticalLT BRIEFAug 25
Critical Auth Bypass (CVE‑2026‑61979 & CVE‑2026‑15981) in miniOrange SAML WordPress Plugin Exploited in the Wild
Two high‑severity authentication bypass flaws in the miniOrange SAML WordPress plugin are actively exploited, allowing unauthenticated attackers to assume any admin account. The issue highlights the need for robust SOC 2…
Security Affairs
🛡️
CVE-2026-76060HighLT BRIEFAug 25
Authenticated OS Command Injection (CVE‑2026‑76060) Enables Remote Code Execution in ZoneMinder 1.37.48/1.38.3
ZoneMinder versions 1.37.48 and 1.38.3 contain an authenticated OS‑command injection (CVE‑2026‑76060) that can give an attacker full remote code execution. The flaw highlights why SOC 2 access‑control and patch‑managemen…
CISA Advisories
🏛️
CVE-2026-60004HighLT BRIEFAug 25
Code Injection in Gitea (CVE‑2026‑60004) Added to CISA KEV Catalog – Active Exploitation Threatens Git Repositories
CISA has listed CVE‑2026‑60004, a remote code‑injection bug in Gitea, in its Known Exploited Vulnerabilities catalog after observing active attacks. Organizations must prioritize remediation to satisfy SOC 2 vulnerabilit…
CISA Advisories
🛡️
CVE-2026-73125CriticalLT BRIEFAug 25
Critical Authentication Bypass in Ebyte NE2‑D11 (CVE‑2026‑73125) Threatens Industrial Control Systems
A CISA advisory reveals CVE‑2026‑73125, a critical authentication bypass in Ebyte NE2‑D11 gateways used in manufacturing and energy. The flaw enables unauthenticated remote access to admin functions, underscoring the nee…
CISA Advisories
🛡️
CVE-2026-18965HighLT BRIEFAug 25
Critical Missing Authorization in PayRange API (CVE‑2026‑18965) Enables Data Disclosure & Device Manipulation
PayRange’s API (all versions) lacks proper authorization on management endpoints, allowing unauthenticated attackers to view device inventories, alter device state, or cause denial‑of‑service. The issue highlights a SOC …
CISA Advisories
🛡️
CVE-2026-58115CriticalLT BRIEFAug 25
Critical Unauthenticated RCE in Siemens SIMATIC IoT2050 Advanced (CVE-2026-58115) Exposes Industrial Control Systems
A missing authentication check in the Node‑RED HTTP interface of Siemens SIMATIC IoT2050 Advanced devices allows unauthenticated attackers to upload malicious flows and execute code with system privileges. The flaw (CVE‑…
CISA Advisories
🛡️
CVE-2026-75960HighLT BRIEFAug 25
High‑Severity Credential Exposure (CVE‑2026‑75960) in Rently Smart Home Could Let Attackers Override User Permissions
Rently Smart Home versions ≤ 20.1.0 are vulnerable to CVE‑2026‑75960, an insufficiently protected credentials flaw that could expose master PINs and bypass user permissions. The issue highlights the need for strong crede…
CISA Advisories
🛡️
CVE-2026-59769CriticalLT BRIEFAug 25
Critical Hard‑Coded Credential Flaw (CVE‑2026‑59769) Lets Network‑Adjacent Attackers Reconfigure FURUNO FA‑50 AIS Transponders
A CISA advisory reports that the FURUNO FA‑50 Class B AIS transponder contains hard‑coded credentials and no authentication for its settings screen (CVE‑2026‑59769, CVSS 9.1). An attacker with access to the vessel’s inte…
CISA Advisories
🛡️
CVE-2026-67560HighLT BRIEFAug 25
Critical Buffer Overflow (CVE‑2026‑67560) in Bendix EC80 Brake ECU Could Disable ABS and Steering Assist
The Bendix EC80 series Brake ECU is vulnerable to CVE‑2026‑67560, a stack‑based buffer overflow that enables remote code execution and CAN‑bus traffic injection. Exploitation could disable ABS, steering assist, speedomet…
CISA Advisories
🔧
CVE-2026-73570HighLT BRIEFAug 25
Code Injection in Zimbra Collaboration Suite (CVE‑2026‑73570) Enables Remote Command Execution on Unpatched Servers
CVE‑2026‑73570 allows unauthenticated attackers to run OS commands on Zimbra mail servers with the optional SNMP package enabled. Over 270 internet‑facing instances have been compromised, highlighting the need for rapid …
Help Net Security
🏛️
CVE-2026-21962CriticalLT BRIEFAug 25
Critical Unauthenticated RCE in Oracle HTTP Server & WebLogic Proxy Plug‑in (CVE‑2026‑21962) Added to CISA KEV Catalog
CISA has added Oracle HTTP Server and WebLogic Proxy Plug‑in vulnerability CVE‑2026‑21962 (CVSS 10.0) to its Known Exploited Vulnerabilities catalog. The flaw allows remote code execution without credentials, prompting i…
Security Affairs
🛡️
CVE-2026-61979HighLT BRIEFAug 25
Unauthenticated Privilege Escalation in miniOrange SAML Plugin (CVE‑2026‑61979) Threatens WordPress Admin Access
The miniOrange SAML 2.0 SSO plugin for WordPress contains an unauthenticated authentication‑bypass (CVE‑2026‑61979, CVSS 8.1) that lets attackers log in as any user, including administrators. For SOC 2‑compliant organiza…
The Hacker News
💥
CVE-2026-21962CriticalLT BRIEFAug 25
Critical Unauthenticated Remote Code Execution in Oracle WebLogic (CVE-2026-21962) Actively Exploited
Oracle WebLogic Server and Oracle HTTP Server contain a CVSS 10.0 remote‑code‑execution flaw (CVE‑2026‑21962) that is being actively exploited in the wild. For SOC 2‑compliant organizations, the incident highlights the n…
The Hacker News
🛡️
Critical VulnerabilityLT BRIEFAug 25
Russian‑Linked Backdoor Discovered in Slovak NERO R‑ONE Traffic Cameras Enables SMS‑Activated Remote Access
Slovakia’s cybersecurity watchdog found a hidden SMS‑activated backdoor in 279 NERO R‑ONE traffic cameras, allowing remote control without authentication. The flaw highlights supply‑chain risk and underscores the need fo…
DataBreachToday
💥
CVE-2026-69414CriticalLT BRIEFAug 25
Critical Zero‑Day Elevation‑of‑Privilege in Microsoft Defender (CVE‑2026‑69414) – ShieldBreak
ShieldBreak (CVE‑2026‑69414) lets a low‑privilege attacker gain SYSTEM rights on Windows 11 25H2 and Server 2025 via Microsoft Defender. No patch exists, so organizations must detect and mitigate now—an urgent SOC 2 acce…
Qualys Blog
🔴
CVE-2026-42167CriticalLT BRIEFAug 25
Critical Remote Code Execution via ProFTPD mod_sql SQL Injection (CVE‑2026‑42167)
A post‑authentication SQL injection in ProFTPD’s mod_sql module (CVE‑2026‑42167) enables remote code execution on servers using a PostgreSQL backend. The flaw underscores the need for robust change‑management, continuous…
Exploit Database
🔧
CVE-2026-73570CriticalLT BRIEFAug 24
Critical Remote Takeover Vulnerability in Zimbra Collaboration Suite (CVE‑2026‑73570) Threatens Email Communications
Zimbra Collaboration Suite versions prior to the latest patch contain CVE‑2026‑73570, a critical flaw that enables unauthenticated full mailbox takeover. The vulnerability is being actively exploited, prompting a three‑d…
Dark Reading
🔧
Critical VulnerabilityLT BRIEFAug 24
Unauthenticated Remote Exploit (CVE‑2026‑75501) Bypasses NAT on Calix GS7 XGS Residential Routers
A flaw in Calix GS7 XGS routers (CVE‑2026‑75501) lets attackers create permanent port‑forwarding rules without authentication, exposing internal devices. The vulnerability highlights the need for continuous control‑mappi…
BleepingComputer
🛡️
High VulnerabilityLT BRIEFAug 24
Critical Authentication‑Bypass Vulnerabilities (CVE‑2026‑61979 & CVE‑2026‑15981) in miniOrange SAML SSO Plugin for WordPress
Researchers disclosed two auth‑bypass flaws in the miniOrange SAML SSO WordPress plugin that let attackers forge SAML responses and gain admin sessions. The issue highlights the need for robust SOC 2 access‑control evide…
BleepingComputer
🏛️
CVE-2026-21962HighLT BRIEFAug 24
CISA Adds Exploited Oracle HTTP Server Access Control Flaw (CVE‑2026‑21962) to KEV Catalog
CISA announced that CVE‑2026‑21962, an improper access‑control bug in Oracle HTTP Server and WebLogic proxy plug‑in, is now listed in the Known Exploited Vulnerabilities catalog, indicating active exploitation. The vulne…
CISA Advisories
🛡️
CVE-2026-18963CriticalLT BRIEFAug 24
Critical Keycloak Password‑Reset Flaw (CVE‑2026‑18963) Lets Unauthenticated Attackers Hijack Any Account
A newly disclosed vulnerability in Red Hat Keycloak (CVE‑2026‑18963) enables unauthenticated attackers to force password resets and take over any user account. The flaw scores 9.1 on CVSS, making it a top priority for SO…
The Hacker News
💥
Critical VulnerabilityLT BRIEFAug 24
CISA Orders Immediate Patch for Actively Exploited Zimbra RCE Vulnerability (CVE‑2026‑73570)
CISA has mandated U.S. federal agencies patch Zimbra Collaboration Suite (CVE‑2026‑73570) after confirming active exploitation. The flaw enables unauthenticated remote code execution, underscoring the need for documented…
BleepingComputer
🔴
CVE-2026-19773CriticalLT BRIEFAug 24
Critical Remote Code Execution in libwebsockets (CVE-2026-19773) via HTTP/2 HPACK Path Header Parsing
A critical out‑of‑bounds write in libwebsockets’ HTTP/2 HPACK path header parsing (CVE‑2026‑19773) enables unauthenticated remote code execution. The flaw affects any product embedding the library, making timely patching…
Zero Day Initiative
🛡️
CVE-2026-13129LowLT BRIEFAug 24
Use‑After‑Free Information Disclosure in Foxit PDF Reader (CVE‑2026‑13129) Risks Sensitive Data
Foxit PDF Reader contains a use‑after‑free flaw (CVE‑2026‑13129) that can disclose information when a crafted PDF is opened. Scoring 3.3 (Low) and requiring user interaction, the vulnerability highlights the need for rob…
Zero Day Initiative
🔴
CVE-2026-19885HighLT BRIEFAug 24
Remote Code Execution in OriginLab Origin Viewer (CVE‑2026‑19885) Enables Out‑Of‑Bounds Write
OriginLab’s Origin Viewer contains a CVE‑2026‑19885 out‑of-bounds write that can lead to remote code execution when a malicious OGWU file is opened. The flaw scores 7.8 (High) and is fixed in version 10.4.0.25. For SOC 2…
Zero Day Initiative
Page 1 of 84