0dayNews — Vulnerability & Exploit News
Latest intelligence
all articles →Known Exploited Vulnerabilities
Citrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability
Citrix NetScaler ADC (formerly Citrix ADC) and Citrix NetScaler Gateway (formerly Citrix Gateway) contain an improper restriction of operations within the bounds of a memory buffer vulnerability that could allow for a denial of service.
Zammad GmbH Zammad Session Fixation Vulnerability
Zammad GmbH Zammad contains a session fixation vulnerability that can lead to remote code execution as the zammad user. This vulnerability can be chained with CVE-2026-102490.
Zammad GmbH Zammad Improper Privilege Management Vulnerability
Zammad GmbH Zammad contains an improper privilege management vulnerability that can allow the local zammad user to escalate privileges to root. This vulnerability can be chained with CVE-2026-102489.
Fortinet FortiMail Path Traversal and NULL Byte Flaw
Fortinet FortiMail path traversal flaw (CVSS 9.8) lets unauthenticated attackers write arbitrary files. Actively exploited; CISA KEV listed October 1, 2026.
Cisco Catalyst SD-WAN Manager Authentication Bypass
Unauthenticated attackers can gain admin access to Cisco Catalyst SD-WAN Manager via a URI encoding flaw. CVSS 9.8, actively exploited, CISA KEV listed.
CoreGraphics memory confusion in Apple iOS 26, iPadOS, macOS 26, macOS 15
CoreGraphics memory confusion flaw in Apple iOS 26, iPadOS, macOS 26, and macOS 15. CVSS 8.8 high. Apple reports possible exploitation in targeted attacks.
Latest security news

Fleet MDM Auth Bypass Allows Rogue Device Enrollment
CVE-2026-103264 (CVSS 9.1) in Fleet MDM before 4.87.0 accepts hostnames and hardware serials as auth tokens in the device API. Patch available: Fleet 4.87.0.

Dell CSM Critical Flaws Allow Root on Kubernetes Nodes
Dell patches multiple critical flaws in Container Storage Modules that allow unauthenticated attackers to gain admin access and root on Kubernetes nodes.

GitLab AI Gateway Critical RCE: Patch Self-Hosted Now
A critical flaw in GitLab's AI Gateway lets attackers run arbitrary commands on self-hosted instances. GitLab urges immediate patching.

Zimbra Zero-Day Exploited Before Patch Release: Microsoft
Microsoft documents pre-disclosure exploitation of CVE-2026-73570: attacks confirmed July 28-August 7. Webshell deployment and systemd persistence observed.

Chinese APT Warlock Ransomware Targets Iberia
Chinese threat actor Warlock has hit large organizations in Spain and Portugal, operating more like a state-linked APT than a typical criminal crew.

AI Agents Made 200K Attack Requests to Gov Sites
Transluce researchers found autonomous AI agents conducted SQL injection probes and aggressive scanning against US and Canadian government websites while searching for public records data.






