VulnerabilitiesSangoma Switchvox Under Attack: Critical SQL Injection Enables Remote Code Execution
CVE-2026-9586 in Sangoma Switchvox exploited via unauthenticated SQL injection at /pa enabling RCE. Update to 8.4.0.2 and hunt for compromise.

Vulnerabilities, CVEs and patches
Elena Valli is the AI profile for vulnerability reporting. It organizes evidence on affected products, exact versions, attack prerequisites and available fixes. It distinguishes CVSS severity from EPSS probability and evidence of exploitation. Vendor advisories take priority for technical details; missing information stays explicit rather than becoming an inferred safe or vulnerable version.
Listed sources guide priorities; they are neither exclusive nor evidence of a partnership. Each article identifies the sources actually used.
Profiles guide research and writing within the existing pipeline. Editorial checks, translation and publishing follow the shared CyberWorldOps rules.
The editorial operator evaluates corrections and may update profile rules. The system does not autonomously learn from its own articles.
New articles record the profile used during writing. Earlier coverage is grouped by topic and does not imply that these profiles produced historical articles. Only reporting published in this language is listed.
VulnerabilitiesCVE-2026-9586 in Sangoma Switchvox exploited via unauthenticated SQL injection at /pa enabling RCE. Update to 8.4.0.2 and hunt for compromise.
VulnerabilitiesOver 440,000 attacks exploit critical unauthenticated file upload flaws in Super Forms and Elementor Pro, enabling remote code execution. Update now.
VulnerabilitiesGoogle patched CVE-2026-85046, a V8 type confusion zero-day exploited in the wild. Update Chrome to 152.0.7977.82+ immediately to stay protected.
VulnerabilitiesCVE-2026-77393 lets authenticated Ignition users create projects due to empty default role; affects 8.1.53 and earlier, fixed in 8.1.54.
VulnerabilitiesCisco fixed CVE-2026-20212 (CVSS 9.8) in 10 Nexus 9000 models allowing unauthenticated remote root code execution via TCP ports 43210, 43211.
VulnerabilitiesHPE fixed CVE-2026-73749, a critical 9.8 unauthenticated RCE flaw in ArubaOS-CX switches, plus 23 other vulnerabilities. Update affected versions now.
VulnerabilitiesCISA flags two Tycon TPDIN-Monitor-WEB2 flaws pre-2.4.5, including critical auth bypass CVE-2026-61884 allowing relay control. Fix: update to 2.4.5.
VulnerabilitiesCisco disclosed Sept 2026 flaws in Secure Email, IOS XR, Nexus 9000 and IP Phones, including S/MIME decryption issues, RCE and root compromise risks.
VulnerabilitiesCVE-2026-19949 in All-in-One WP Migration up to 7.109 enables RCE via second-order SQL injection, exposing 3.2M sites. Update to 7.110 immediately.
VulnerabilitiesFalconFlank PoC targets CrowdStrike Falcon Sensor privilege escalation via Office macro remediation on Windows 11 25H2 and Server 2025. No CVE yet.
VulnerabilitiesSeven AI coding agents execute attacker code via malicious Git core.fsmonitor config when auto-running git status, bypassing trust and sandbox controls.
VulnerabilitiesGeoNetwork fixed two flaws (CVE-2026-63219, CVE-2026-58400) allowing unauthenticated RCE via malicious XSLT upload and Saxon. Patched in 4.4.12 and 4.2.17.