// 2 CRITICAL · 5 ZERO-DAY · 10 CVE · 8 EXPLOIT · 1 ADVISORY IN THE LAST 24H
linuxCVE

CVE-2026-23111: Single-Character Logic Error Grants Root Access on Linux

An inverted check in the nf_tables subsystem enables local privilege escalation and container breakouts. With public exploits already…

Jun 08, 2026views - 2.2k

malware

C0XMO: Gafgyt Variant Targets DD-WRT Routers with Modular Scanner and Competitor-Killing Routine

The C0XMO variant of the Gafgyt botnet exploits CVE-2021-27137 in DD-WRT firmware, utilizing a modular architecture with a standalone…

Jun 07, 2026views - 879

VULNCVE

CVE-2026-8936: Docker Desktop VM Panic Triggered via grpcfuse Recursion

A low-privileged container can trigger a VM panic in Docker Desktop through uncontrolled recursion in the grpcfuse module. The vulnera…

Jun 04, 2026views - 805

VULNEXPLOIT

CIFSwitch: Linux Kernel Bug Grants Root Access on CentOS and Rocky Linux

CIFSwitch enables local privilege escalation to root across multiple Linux distributions. While a public PoC is available and an upstr…

May 30, 2026views - 194

linuxCVE

CVE-2026-46333: Nine-Year-Old Linux Kernel Flaw Enables Root Escalation

Qualys researchers have disclosed CVE-2026-46333, a Linux kernel vulnerability dormant since 2016 that enables local privilege escalat…

May 21, 2026views - 237

VULNCVE

CVE-2025-68670: Pre-auth RCE Vulnerability Identified in xrdp Server Domain Field

A technical breakdown of CVE-2025-68670: A stack buffer overflow within xrdp's domain name processing logic enables unauthenticated re…

May 21, 2026views - 185

VULNEXPLOIT

NGINX Rift: Critical CVE-2026-42945 Exploitation Detected In-the-Wild

The NGINX Rift vulnerability (CVE-2026-42945) has seen active exploitation since May 16, leveraging a long-dormant heap buffer overflo…

May 18, 2026views - 124

VULNEXPLOIT

DirtyDecrypt: Linux Local Privilege Escalation Exploit Surfaces for Unpatched Systems

A proof-of-concept for 'DirtyDecrypt'—a local privilege escalation flaw in the Linux kernel's RXGK module—is now public. Organizations…

May 18, 2026views - 207

linux

Fragnesia Flaw Enables Local Root via Linux Page Cache Corruption

CVE-2026-46300 allows local root escalation on Linux by corrupting read-only files in memory. With a public PoC available and patches…

May 14, 2026views - 133

VULNCRITICAL

Exim 'Dead.Letter' Vulnerability: Critical RCE Risk for GnuTLS-Based Builds

CVE-2026-45185 is a use-after-free vulnerability in the Exim SMTP BDAT parser that allows unauthenticated RCE on GnuTLS-compiled serve…

May 13, 2026views - 129

linuxEXPLOIT

Dirty Frag LPE Chain: Deterministic Linux Root Access via Single Command

Dirty Frag exploits two Linux kernel vulnerabilities to achieve deterministic local privilege escalation to root. With a public PoC av…

May 13, 2026views - 140

CYBERSECCRITICAL

Exim 'Dead.Letter' Vulnerability: Unauthenticated RCE Threatens GnuTLS-Based Mail Servers

A critical use-after-free vulnerability in Exim’s BDAT parser (CVE-2026-45185) allows for unauthenticated remote code execution on ser…

May 13, 2026views - 110