61. What we know about Copy Fail (CVE-2026-31431) vulnerability | High | Actively exploited | 2026-04-29 22:26 | CVE-2026-31431 | bugcrowd.com | original ↗ | #active-exploitation | #ai-security | #zero-day
62. Dirty Frag: Linux Kernel Local Privilege Escalation via ESP and RxRPC vulnerability | 2026-05-08 08:57 | CVE-2026-43284 | wiz.io | original ↗ | #privilege-escalation | #linux-kernel | #vulnerability
63. Critical Buffer Overflow Vulnerability in PAN-OS Exploited in-the-Wild vulnerability | 2026-05-06 12:33 | CVE-2026-0300 | wiz.io | original ↗ | #rce | #vulnerability | #palo-alto-networks
64. Securing GitHub: Wiz Research uncovers Remote Code Execution in GitHub.com and GitHub Enterprise Server (CVE-2026-3854) vulnerability | 2026-04-28 15:30 | CVE-2026-3854 | wiz.io | original ↗ | #rce | #vulnerability-research | #github
65. CVE-2026-20963 Analysis vulnerability | 2026-04-24 08:52 | CVE-2026-20963 | blog.viettelcybersecurity.com | original ↗ | #rce | #sharepoint | #patch-analysis
66. Finding and Patching a CPython 0day in Hours: CVE-2026-6100 vulnerability | Critical | 2026-04-13 20:44 | CVE-2026-6100 | theori.io | original ↗ | #ai-security | #zero-day | #use-after-free
67. API Authentication Bypass in FortiClient EMS 7.4.5-7.4.6–CVE-2026-35616 vulnerability | Critical | Actively exploited | 2026-04-07 00:00 | CVE-2026-35616 | bishopfox.com | original ↗ | #vulnerability-research | #authentication-bypass | #certificate-validation
68. From a Netfilter Bug to kernelCTF: Exploiting CVE-2026-23274 in the Linux Kernel and winning a $10500 Bounty vulnerability | High | 2026-04-14 00:00 | CVE-2026-23274 | nebusec.ai | original ↗ | #ai-security | #kernel-security | #privilege-escalation
69. Axios CVE-2026-40175: a critical bug that’s… not exploitable vulnerability | Medium | 2026-04-14 00:00 | CVE-2026-40175 | aikido.dev | original ↗ | #prototype-pollution | #request-smuggling | #cve
70. Critical auth bypass in WordPress Azure AD SSO plugin due to missing OIDC id_token validation vulnerability | Critical | 2026-04-10 07:36 | CVE-2026-2628 | yeswehack.com | original ↗ | #cloud | #authentication-bypass | #wordpress
71. strongSwan CVE-2026-25075: Integer Underflow in VPN Authentication vulnerability | High | 2026-03-26 00:00 | CVE-2026-25075 | bishopfox.com | original ↗ | #vulnerability-research | #denial-of-service | #integer-underflow
72. What You Need to Know: Windows Admin Center Remote Privilege Escalation (CVE-2026-26119) vulnerability | High | 2026-03-23 11:05 | CVE-2026-26119 | semperis.com | original ↗ | #vulnerability-research | #privilege-escalation | #windows-security
73. Turning Email Template Injection into Remote Code Execution vulnerability | 2026-03-23 14:10 | labs.cognisys.group | original ↗ | #rce | #pentesting | #web-security
74. Pre-Authentication SQL Injection in FortiClient EMS 7.4.4 - CVE-2026-21643 vulnerability | Critical | Actively exploited | 2026-03-09 00:00 | CVE-2026-21643 | bishopfox.com | original ↗ | #vulnerability-research | #sql-injection | #web-security
75. PageJack in Action: CVE-2022-0995 exploit vulnerability | High | 2026-03-10 23:00 | CVE-2022-0995 | blog.quarkslab.com | original ↗ | #public-poc | #vulnerability-research | #privilege-escalation
76. Apache Proxy Paradox CVE-2021-40438 vulnerability | 2026-03-06 09:10 | CVE-2021-40438 | labs.cognisys.group | original ↗ | #cloud | #pentesting | #apache
77. The Masked Namespace Vulnerability In Temporal CVE-2025-14986 vulnerability | Medium | 2026-02-05 00:00 | CVE-2025-14986 | depthfirst.com | original ↗ | #cloud | #vulnerability-research | #multi-tenancy
78. Hunting OpenClaw Exposures: CVE-2026-25253 in Internet-Facing AI Agent Gateways vulnerability | High | 2026-02-03 00:00 | CVE-2026-25253 | hunt.io | original ↗ | #ai-security | #vulnerability | #ai-agents
79. SyncJacking: Hard Matching Vulnerability Enables Entra ID Account Takeover vulnerability | High | 2026-01-13 17:54 | semperis.com | original ↗ | #attack-chains | #account-takeover | #identity-security
80. nOAuth Abuse Update: Potential Pivot into Microsoft 365 vulnerability | Medium | 2026-01-06 00:28 | semperis.com | original ↗ | #vulnerability-research | #attack-chains | #identity-security
81. Protecting Against Zero-Day Vulnerabilities with SOC-Level ASM Alert vulnerability | 2025-12-30 12:49 | CVE-2025-55182 | wiz.io | original ↗ | #zero-day | #attack-surface-management | #asm
82. CVE-2025-54322 (ZERODAY) - Unauthenticated Root RCE affecting ~70,000+ Hosts vulnerability | Critical | 2025-12-26 16:25 | CVE-2025-54322 | pwn.ai | original ↗ | #ai-security | #rce | #zero-day
83. MongoBleed (CVE-2025-14847) exploited in the wild: everything you need to know vulnerability | 2025-12-28 09:24 | CVE-2025-14847 | wiz.io | original ↗ | #cloud | #memory-safety | #information-disclosure
84. ALPC You Later: CVE-2025-64721 Sandbox Escape Smashing The Heap Over IPC vulnerability | Critical | 2025-12-23 00:00 | CVE-2025-64721 | depthfirst.com | original ↗ | #rce | #vulnerability-research | #windows-security
85. React & Next.js DoS Vulnerability (CVE-2025-55184): What You Need to Fix After React2Shell vulnerability | High | 2025-12-12 00:00 | CVE-2025-55184 | aikido.dev | original ↗ | #appsec | #vulnerability-research | #denial-of-service
86. Gogs 0-Day Exploited in the Wild vulnerability | 2025-12-10 15:00 | CVE-2025-8110 | wiz.io | original ↗ | #rce | #zero-day | #vulnerability
87. CVE-2025-55182 and CVE-2025-66478 (“React2Shell”): All you need to know – UPDATED vulnerability | 2025-12-09 14:15 | jfrog.com | original ↗ | #rce | #vulnerability | #react2shell
88. K7 Antivirus: Named pipe abuse, registry manipulation and privilege escalation (CVE-2025-67826) vulnerability | High | 2025-12-01 23:00 | CVE-2025-67826 | blog.quarkslab.com | original ↗ | #vulnerability-research | #privilege-escalation | #windows-security
89. PyTorch Users at Risk: Unveiling 3 Zero-Day PickleScan Vulnerabilities vulnerability | 2025-12-02 14:26 | jfrog.com | original ↗ | #ai-security | #supply-chain | #zero-day
90. Fortinet FortiWeb Authentication Bypass – CVE-2025-64446 vulnerability | Critical | Actively exploited | 2025-11-19 00:00 | CVE-2025-64446 | bishopfox.com | original ↗ | #active-exploitation | #vulnerability-research | #authentication-bypass