VulnerabilitiesMikroTrick Zero-Day Chain Gives Attackers Admin Control of MikroTik Routers
MikroTrick exploits two MikroTik RouterOS SSH flaws to gain admin control. Learn affected versions, attack timeline, compromise signs and how to patch.
VulnerabilitiesMikroTrick exploits two MikroTik RouterOS SSH flaws to gain admin control. Learn affected versions, attack timeline, compromise signs and how to patch.
VulnerabilitiesCVE-2026-77477 in OPC UA LDS installers before 1.04.420 lets local attackers use an elevated console to run commands and escalate privileges.
VulnerabilitiesPostgreSQL CVE-2026-6471 lets REPLICATION users load arbitrary libraries via logical decoding to execute code as postgres. See affected versions and fix.
VulnerabilitiesStyleSmuggler zero-day exploits patched Magento stores via payment emails to gain RCE and install persistent Linux backdoor.
VulnerabilitiesCritical CVE-2026-78012 buffer overflow in Pyramid NetStaX EtherNet/IP kits before v5.6.1 allows unauthenticated crash via Class 3 request. Update now.
VulnerabilitiesCVE-2026-75925 in IXON VPN Client before 1.4.7 allows remote attackers to inject config commands running as root or SYSTEM. Update to 1.4.7 now.
VulnerabilitiesBroadcom fixed two critical VMware Workstation and Fusion flaws allowing VM escape to host. Upgrade to 26H1u1 to patch CVE-2026-59346, CVE-2026-59347.
VulnerabilitiesCVE-2026-6471 lets PostgreSQL replication users load arbitrary code via logical decoding, gaining OS and superuser access. Patch now.
VulnerabilitiesAttackers target CVE-2026-19490, a NetScaler ADC and Gateway auth bypass. PoC attempts seen from 3 countries. Patch vulnerable AAA, VPN configs now.