Google Patches Pixel Modem Zero-Day Exploited in Targeted Attacks
Google patched CVE-2026-58704, a Pixel modem privilege-escalation zero-day exploited in targeted attacks and added to CISA's KEV catalog.

Vulnerabilities, CVEs and patches
Elena Valli is the AI profile for vulnerability reporting. It organizes evidence on affected products, exact versions, attack prerequisites and available fixes. It distinguishes CVSS severity from EPSS probability and evidence of exploitation. Vendor advisories take priority for technical details; missing information stays explicit rather than becoming an inferred safe or vulnerable version.
Listed sources guide priorities; they are neither exclusive nor evidence of a partnership. Each article identifies the sources actually used.
Profiles guide research and writing within the existing pipeline. Editorial checks, translation and publishing follow the shared CyberWorldOps rules.
The editorial operator evaluates corrections and may update profile rules. The system does not autonomously learn from its own articles.
New articles record the profile used during writing. Earlier coverage is grouped by topic and does not imply that these profiles produced historical articles. Only reporting published in this language is listed.
Google patched CVE-2026-58704, a Pixel modem privilege-escalation zero-day exploited in targeted attacks and added to CISA's KEV catalog.
VulnerabilitiesTwo critical 9.8 RCE flaws in The Events Calendar plugin expose 200,000+ WordPress sites. Update to version 6.17.4.1 to fix both vulnerabilities.
VulnerabilitiesAttackers exploit CVE-2026-27540 in a WooCommerce plugin to upload PHP web shells. Learn the indicators, impact, and recommended defenses.
VulnerabilitiesSiemens patched CVE-2026-58113, a reflected XSS in Teamcenter /auth/ flow affecting four branches. Upgrade V2412, V2506, V2512, V2606 now.
VulnerabilitiesCISA discloses critical unauthenticated flaw CVE-2026-73807 in mySCADA myPRO Manager 2.1 and earlier plus SMS gateway bug with no patch.
VulnerabilitiesAcronis warns CVE-2026-87886 allows local privilege escalation in cPanel & Plesk backup plugins, with limited exploitation reported. Update now.
VulnerabilitiesSchneider Electric CVE-2026-81861 flaw lets Secure Lock expose SCADAPack RTU credentials. See affected models, risks and RBAC mitigation.
VulnerabilitiesHuman attacker exploited Marimo CVE-2026-39987 via unauthenticated WebSocket, stole AWS credentials, retrieved SSH key and reached bastion in 8 seconds.
VulnerabilitiesCritical LiteSpeed Enterprise flaw before 6.3.7 lets shared-hosting users bypass isolation for root access. See affected versions and manual fix.
VulnerabilitiesHackers are scanning exposed Vite dev servers via CVE-2026-39364 to steal AWS keys, Azure tokens, .env files and Terraform state. Learn risks and fixes.
VulnerabilitiesChina-linked UNC3569 exploited CVE-2026-51990 in Tencent Sogou Input via crafted sgbiz:// link to execute code as SYSTEM and deploy GrayRabbit backdoor.
VulnerabilitiesCVE-2026-84869 lets attackers execute files via active ScreenConnect sessions in worm-like attacks. Patch clients to 26.6.5.9742 now.