LiveThreat Vulnerabilities
// VULNERABILITY TRACKING

VULNERABILITY TRACKER

CVE tracking, CISA KEV alerts, and zero-day disclosures with third-party risk impact analysis.

Breaches Advisories Vulnerabilities 📡 RSS
Time: Severity: 927 items
💥
Critical VulnerabilityLT BRIEFMay 19
Multiple Windows Zero‑Day Vulnerabilities (YellowKey, GreenPlasma, MiniPlasma) Disclosed After Patch Tuesday
A security researcher revealed three critical Windows kernel zero‑days—YellowKey, GreenPlasma, and MiniPlasma—shortly after Microsoft’s latest Patch Tuesday, raising urgent remediation concerns for any organization relyi…
Dark Reading
🔧
High VulnerabilityLT BRIEFMay 19
Drupal Issues Emergency Core Update to Patch Critical Vulnerability Across Web Platforms
Drupal will release an emergency core security update on May 20 2026 for all supported branches. The undisclosed flaw could be weaponised within hours, putting government, education, media, and enterprise sites at risk. …
Security Affairs
🔧
Critical VulnerabilityLT BRIEFMay 19
Critical OpenClaw Vulnerabilities Enable AI Agent Hijack and System‑Level Takeover
Four newly disclosed CVEs in the OpenClaw AI‑agent platform let attackers move from an initial foothold to persistent system control, stealing credentials and planting backdoors. The flaws have been patched, but unpatche…
DataBreachToday
🛡️
High VulnerabilityLT BRIEFMay 19
Verizon DBIR 2026 Shows 35% of KEV Vulnerabilities Still Open After 28 Days, 47M Instances Unresolved
Verizon’s 2026 DBIR, with Qualys data, reveals a reversal in remediation performance: 35% of known‑exploited vulnerabilities remain open after 28 days, and a long‑tail 9% (≈ 47 M) stay unresolved. The trend highlights a …
Qualys Blog
💥
High VulnerabilityLT BRIEFMay 19
Pwn2Own Berlin 2026 Unveils 47 Zero‑Day Exploits Across Enterprise Software and AI Platforms
Researchers at Pwn2Own Berlin 2026 demonstrated 47 zero‑day vulnerabilities in major enterprise SaaS, cloud, and AI platforms, earning $1.3 million in payouts. The findings expose unknown risk to vendors and their custom…
HackRead
🛡️
High VulnerabilityLT BRIEFMay 19
Eight Critical TP‑Link Archer AX53 Flaws and Additional Zero‑Day Bugs in Photoshop, OpenVPN, and Norton VPN Disclosed by Cisco Talos
Cisco Talos uncovered eight severe vulnerabilities in TP‑Link’s Archer AX53 router plus new bugs in Adobe Photoshop, OpenVPN, and Norton VPN. All patches are live except the Norton issue, creating immediate third‑party r…
Cisco Talos Intelligence
⬆️
Critical VulnerabilityLT BRIEFMay 19
Critical Microsoft Vulnerabilities Double in 2025, Elevating Privilege Risks Across Cloud Services
Microsoft disclosed 1,273 vulnerabilities for 2025, but critical flaws surged from 78 to 157, with elevation‑of‑privilege bugs now accounting for 40 % of all CVEs. The spike in Azure and Dynamics 365 critical issues rais…
BleepingComputer
🛡️
CVE-2026-0300CriticalLT BRIEFMay 19
Critical Unauthenticated RCE in Palo Alto Networks PAN‑OS (CVE‑2026‑0300) Threatens Siemens RUGGEDCOM APE1808 Devices
A buffer‑overflow in PAN‑OS’s User‑ID Authentication Portal (CVE‑2026‑0300) enables unauthenticated remote code execution with root privileges on Siemens RUGGEDCOM APE1808 devices. The flaw poses a high‑severity supply‑c…
CISA Advisories
🛡️
CVE-2026-8602CVE-2026-8603CVE-2026-8604CVE-2026-8605CriticalLT BRIEFMay 19
Critical RCE & OS Command Injection in ScadaBR 1.2.0 (CVE‑2026‑8602‑8605) Threatens Global Critical‑Infrastructure SCADA Deployments
Four high‑severity CVEs in ScadaBR 1.2.0 enable unauthenticated remote code execution, OS command injection, CSRF, and hard‑coded credentials. The flaws affect SCADA systems used in energy, water, and manufacturing, crea…
CISA Advisories
🛡️
CVE-2026-8598CriticalLT BRIEFMay 19
Critical Authentication Bypass in ZKTeco CCTV Cameras (CVE‑2026‑8598) Exposes Credentials
A critical authentication‑bypass flaw (CVE‑2026‑8598) in ZKTeco SSC335‑GC2063‑Face‑0b77 cameras allows unauthenticated retrieval of device configuration and clear‑text account passwords. The issue affects deployments wor…
CISA Advisories
🛡️
CVE-2025-3465HighLT BRIEFMay 19
Path Traversal (CVE‑2025‑3465) in ABB CoreSense HM & CoreSense M10 Enables Full System Compromise
ABB disclosed a path‑traversal vulnerability (CVE‑2025‑3465) affecting CoreSense HM and M10 controllers. The flaw permits unauthenticated file‑system access, risking full device takeover and exposure of sensitive operati…
CISA Advisories
🛡️
CVE-2026-4293MediumLT BRIEFMay 19
Cross‑Site Scripting (CVE‑2026‑4293) in Kieback & Peter DDC Building Controllers Enables Browser Takeover
A reflected XSS flaw (CVE‑2026‑4293) affects multiple Kieback & Peter DDC building‑automation controllers, allowing attackers to execute arbitrary JavaScript in a victim’s browser. The vulnerability spans firmware across…
CISA Advisories
🔧
High VulnerabilityLT BRIEFMay 19
Drupal Issues Urgent Core Security Update to Patch Critical Vulnerabilities Across All Supported Branches
Drupal will release an emergency core security patch on May 20 2026 for all supported versions, addressing several high‑severity CVEs that could be exploited within hours. Organizations relying on Drupal‑based sites must…
The Hacker News
🛡️
High VulnerabilityLT BRIEFMay 19
Active Exploitation of Nginx Rift (CVE‑2024‑XXXX) Enables DoS on NGINX Web Servers and F5 Load‑Balancing Appliances
Threat actors are actively exploiting the Nginx Rift vulnerability (CVE‑2024‑XXXX) to crash NGINX and F5 BIG‑IP/NGINX PLUS appliances, causing denial‑of‑service conditions. The issue impacts any organization that relies …
HackRead
🛡️
High VulnerabilityLT BRIEFMay 18
Unauthenticated Access to GPON OLTs Could Enable Full ISP Network Takeover
Quarkslab researchers uncovered that many GPON Optical Line Terminals expose unauthenticated management interfaces, allowing attackers to pivot to cloud fleet managers and seize control of entire ISP infrastructures. The…
Quarkslab Blog
💥
CVE-2026-42897CriticalLT BRIEFMay 18
Critical XSS Zero‑Day (CVE‑2026‑42897) in Microsoft Exchange Actively Exploited, No Patch Available
A critical cross‑site scripting vulnerability (CVE‑2026‑42897) in Microsoft Exchange Server is being weaponised in the wild, and Microsoft has not yet released a fix. The flaw enables attackers to hijack Outlook Web Acce…
Dark Reading
🛡️
High VulnerabilityLT BRIEFMay 18
Critical “Claw Chain” Vulnerabilities in OpenClaw AI Agent Framework Expose Credential Theft and Privilege Escalation
OpenClaw, a fast‑growing AI‑agent framework, contained a series of chained vulnerabilities that could be used to steal credentials, elevate privileges, and maintain persistence. The issues have been patched, but any unpa…
Dark Reading
🔴
High VulnerabilityLT BRIEFMay 18
Critical Remote Code Execution Vulnerabilities Discovered in NGINX Impact Multiple Deployments
Researchers disclosed several high‑severity NGINX vulnerabilities that enable unauthenticated remote code execution when ASLR is disabled. Exploits are publicly available and CVE‑2026‑42945 has been observed in the wild,…
CIS Advisories
🛡️
CVE-2026-42945CriticalLT BRIEFMay 18
Critical NGINX ‘Rift’ (CVE‑2026‑42945) Enables Remote Code Execution and DoS Across Web‑Infrastructure
A memory‑corruption flaw in NGINX (CVE‑2026‑42945) allows unauthenticated attackers to trigger RCE or denial‑of‑service via a crafted HTTP request. The vulnerability affects both open‑source and commercial NGINX releases…
Help Net Security
💥
Critical VulnerabilityLT BRIEFMay 18
Zero‑Day “YellowKey” Exploit Bypasses Windows 11 BitLocker Encryption
A newly disclosed zero‑day, YellowKey, can defeat default BitLocker encryption on Windows 11 when an attacker briefly accesses the device, exposing any data stored on the volume. Organizations relying on BitLocker for da…
Schneier on Security
🔴
CVE-2026-8043CriticalLT BRIEFMay 18
Critical RCE in Ivanti Xtraction (CVE‑2026‑8043) and Related Flaws Across Fortinet, SAP, VMware, n8n Threaten Enterprise Supply Chains
A wave of high‑severity vulnerabilities—including a CVSS 9.6 remote code execution in Ivanti Xtraction—has been disclosed across five major vendors. Exploits are already circulating, putting enterprises that rely on thes…
The Hacker News
💥
Critical VulnerabilityLT BRIEFMay 18
MiniPlasma Zero‑Day Enables SYSTEM Privilege Escalation on Fully Patched Windows
A new Windows zero‑day, dubbed MiniPlasma, exploits the cldflt.sys Cloud Files driver to grant attackers SYSTEM privileges on fully patched Windows 10/11 and Server installations. The flaw poses a high‑impact risk for an…
The Hacker News
💥
CVE-2020-17103CriticalLT BRIEFMay 18
MiniPlasma Zero-Day (CVE‑2020‑17103) Enables SYSTEM Privilege Escalation on Patched Windows 11
A previously reported Windows privilege‑escalation bug (CVE‑2020‑17103) remains exploitable on fully patched Windows 10 and Windows 11 machines. Public PoC demonstrates reliable SYSTEM‑level code execution, posing a high…
Security Affairs
⬆️
High VulnerabilityLT BRIEFMay 18
Proof‑of‑Concept Exploit for DirtyDecrypt Linux Kernel Root‑Escalation (CVE‑2026‑31635) Threatens Enterprise Linux Environments
A publicly released proof‑of‑concept exploit for the DirtyDecrypt (CVE‑2026‑31635) Linux kernel privilege‑escalation flaw enables attackers to obtain root on systems with the rxgk module enabled. The issue impacts major …
BleepingComputer
🛡️
CVE-2026-42945CriticalLT BRIEFMay 18
Critical Heap Buffer Overflow in NGINX (CVE‑2026‑42945) Actively Exploited, Threatening Web Infrastructure
A critical heap‑buffer overflow (CVE‑2026‑42945) affecting NGINX Plus and Open Source is being actively exploited. The flaw resides in the rewrite module and can cause crashes or remote code execution under specific conf…
Security Affairs
Page 1 of 38