Skip to content
feed: live
>_0dayNews

0dayNews — Vulnerability & Exploit News

$ kev-tracker --recent

Known Exploited Vulnerabilities

full tracker →
CVE-2026-85046
[ HIGH ]CVSS 8.8EPSS 0.5%kev

Type confusion in Chrome V8 allows sandbox code execution

Type confusion in Chrome's V8 engine lets remote attackers run arbitrary code inside the browser sandbox via a crafted HTML page. Actively exploited; update to 152.0.7977.82.

Google / Chrome (before 152.0.7977.82)
CVE-2026-48710
[ MEDIUM ]CVSS 6.5EPSS 36.3%kev

Kludex Starlette HTTP Request/Response Smuggling Vulnerability

Kludex Starlette contains a HTTP request/response smuggling vulnerability that could allow attackers to inject paths into the host part, prepending the actual path leading to issues such as authentication bypass when the authentication depends on the reconstructed URL’s path. This vulnerability could be chaned with CVE-2026-42271.

Kludex / Starlette
CVE-2026-49869
[ CRITICAL ]CVSS 10.0EPSS 1.9%kev

Kestra OSS OS Command Injection Vulnerability

Kestra OSS contains an OS command injection vulnerability that could allow an unauthenticated remote attacker to create and execute arbitrary workflows without credentials.

Kestra / Kestra OSS
CVE-2026-59822
[ HIGH ]CVSS 8.2EPSS 0.9%kev

BerriAI LiteLLM Improper Authentication Vulnerability

BerriAI LiteLLM contains an improper authentication vulnerability in the MCP Streamable HTTP endpoint that could allow an unauthenticated attacker to establish an authenticated MCP session using an arbitrary Bearer token.

BerriAI / LiteLLM
CVE-2026-9586
[ HIGH ]EPSS 11.8%kev

Sangoma Switchvox SQL Injection Vulnerability

Sangoma Switchvox contains a SQL injection vulnerability which allows an unauthenticated remote attacker to execute arbitrary SQL statements against the backend PostgreSQL database using a single crafted request, including database operations and remote code execution.

Sangoma / Switchvox
CVE-2026-83548
[ HIGH ]EPSS 0.7%kev

Pre-auth SSRF in SonicWall SMA1000 Workplace Interface

Unauthenticated SSRF in the SMA1000 Workplace interface allows remote attackers to reach internal functionality via an unintended access path. Exploited in the wild; chains with CVE-2026-83549 for RCE.

SonicWall / SMA1000
$ latest --more

From the desk

all articles →
~/articles/2026-09-03-openai-astra-critical-cybersecurity-threshold
OpenAI's Astra Crosses Critical Cybersecurity Threshold
Analysis
ai tools

OpenAI's Astra Crosses Critical Cybersecurity Threshold

OpenAI's Astra is the first AI model formally designated as capable of autonomously finding and exploiting zero-days across well-defended systems.

read →
~/articles/2026-09-03-crowdstrike-falcon-falconflank-priv-esc-poc
FalconFlank PoC: Privilege Escalation in CrowdStrike Falcon
threat intel

FalconFlank PoC: Privilege Escalation in CrowdStrike Falcon

Researcher Chaotic Eclipse released a public PoC for FalconFlank, a privilege escalation zero-day in CrowdStrike Falcon. No CVE assigned. No patch confirmed as of September 3.

read →
~/articles/2026-09-03-cisa-kev-seven-flaws-reverse-shells-miners
CISA Adds Seven Exploited Flaws to KEV Catalog
● Breaking
cisa kev

CISA Adds Seven Exploited Flaws to KEV Catalog

CISA added seven actively exploited vulnerabilities to KEV on September 3, including a critical Sangoma Switchvox SQL injection. Federal agencies face BOD 26-04 remediation deadlines.

read →
~/articles/2026-09-03-elasticsearch-cve-2026-72649-ml-rce
Elasticsearch Patches RCE in Machine Learning Module
● Breaking
cloud

Elasticsearch Patches RCE in Machine Learning Module

Elastic patches CVE-2026-72649, a CVSS 8.8 deserialization flaw in the ML component that lets privileged users achieve RCE via crafted model artifacts.

read →
~/articles/2026-09-03-forescout-vedere-claude-wago-plc-exploit-port
Forescout Uses Claude to Port RCE Across WAGO PLCs
ics ot

Forescout Uses Claude to Port RCE Across WAGO PLCs

Vedere Labs used Claude to port a pre-auth RCE exploit between WAGO PLC models, showing AI tools can lower barriers to ICS exploitation.

read →
~/articles/2026-09-02-switchvox-unauthenticated-rce-reverse-shells
Switchvox Flaw Exploited for Unauthenticated RCE
threat intel

Switchvox Flaw Exploited for Unauthenticated RCE

Attackers are exploiting a critical vulnerability in Sangoma Switchvox enterprise VoIP to deploy reverse shells without credentials. No CVE identifier publicly disclosed yet.

read →