VulnerabilitiesCitrix NetScaler: Exploitation Attempts Target Critical Vulnerability CVE-2026-19490
Attackers target CVE-2026-19490, a NetScaler ADC and Gateway auth bypass. PoC attempts seen from 3 countries. Patch vulnerable AAA, VPN configs now.
VulnerabilitiesAttackers target CVE-2026-19490, a NetScaler ADC and Gateway auth bypass. PoC attempts seen from 3 countries. Patch vulnerable AAA, VPN configs now.
VulnerabilitiesCVE-2026-9586 in Sangoma Switchvox exploited via unauthenticated SQL injection at /pa enabling RCE. Update to 8.4.0.2 and hunt for compromise.
VulnerabilitiesOver 440,000 attacks exploit critical unauthenticated file upload flaws in Super Forms and Elementor Pro, enabling remote code execution. Update now.
VulnerabilitiesGoogle patched CVE-2026-85046, a V8 type confusion zero-day exploited in the wild. Update Chrome to 152.0.7977.82+ immediately to stay protected.
VulnerabilitiesCVE-2026-77393 lets authenticated Ignition users create projects due to empty default role; affects 8.1.53 and earlier, fixed in 8.1.54.
VulnerabilitiesCisco fixed CVE-2026-20212 (CVSS 9.8) in 10 Nexus 9000 models allowing unauthenticated remote root code execution via TCP ports 43210, 43211.
VulnerabilitiesHPE fixed CVE-2026-73749, a critical 9.8 unauthenticated RCE flaw in ArubaOS-CX switches, plus 23 other vulnerabilities. Update affected versions now.
VulnerabilitiesCISA flags two Tycon TPDIN-Monitor-WEB2 flaws pre-2.4.5, including critical auth bypass CVE-2026-61884 allowing relay control. Fix: update to 2.4.5.
VulnerabilitiesCisco disclosed Sept 2026 flaws in Secure Email, IOS XR, Nexus 9000 and IP Phones, including S/MIME decryption issues, RCE and root compromise risks.