// 4 CVE · 3 EXPLOIT · 1 ADVISORY IN THE LAST 24H
VULNCVE

CVE-2026-48095: 7-Zip NTFS Handler Heap Overflow

A heap overflow in 7-Zip’s NTFS handler allows for RCE via crafted files. The vulnerability involves signature-based file routing that…

Jun 03, 2026views - 46

CYBERSECCRITICAL

Kemp LoadMaster API Flaw Enables Authenticated RCE: CVSS 8.8 Vulnerability Patched

CVE-2026-3517 in Progress Software Kemp LoadMaster allows authenticated users to execute arbitrary code via command injection in the c…

Jun 03, 2026views - 15

VULNCVE

CVE-2026-0826: Root RCE Vulnerability Hits HP Poly Enterprise VoIP Phones

A critical stack-based buffer overflow in HP Poly Voice's SDP parsing allows unauthenticated remote code execution with root privilege…

Jun 03, 2026views - 19

CYBERSECEXPLOIT

Insight Launches Managed Exposure Defense to Combat AI-Driven Exploit Speed

Insight consolidates CTEM, enterprise patching, supply chain risk, surge engineering, and XDR into a unified managed service designed…

Jun 01, 2026views - 18

CYBERSECCRITICAL

Microsoft Patched a Critical SharePoint RCE but Omitted the CVE from Official Documentation

CVE-2026-45659, a CVSS 8.8 SharePoint Server RCE, was missing from Microsoft’s May 2026 security update list. While the patch was dist…

Jun 01, 2026views - 47

CYBERSECEXPLOIT

CERT-In Mandates 12-Hour Patching Window to Combat AI-Driven Exploits

India’s national cyber agency, CERT-In, has established a new 12-hour remediation standard for internet-facing and 'crown jewel' syste…

May 31, 2026views - 175

googleCRITICAL

Chrome 148: Google Patches 151 Vulnerabilities, Including 22 Critical Flaws

Google has released Chrome 148, addressing 151 security vulnerabilities with 22 rated at maximum criticality. The update includes over…

May 29, 2026views - 12

VULNZERO-DAY

FortiClient EMS: EKZ Infostealer May Target VPN Management Channels

CVE-2026-35616 (CVSS 9.8): Compromised FortiClient EMS platforms could be transformed into malware delivery vehicles. Attacks in May 2…

May 29, 2026views - 11

VULNCVE

7-Zip CVE-2026-48095: NTFS Heap Overflow Enables Vtable Hijacking

A critical heap buffer overflow in 7-Zip 26.00 allows for Remote Code Execution (RCE) via specially crafted NTFS files, regardless of…

May 27, 2026views - 47

CYBERSECCRITICAL

Siemens Simcenter Femap Memory Corruption Vulnerability: Coordinated Disclosure Set for May 2026

A high-severity memory corruption vulnerability in Simcenter Femap’s IPT file parser (ZDI-26-317) leaves users with a nine-month expos…

May 27, 2026views - 15

VULNCRITICAL

Progress Software Patches High-Severity Command Injection in Kemp LoadMaster (ZDI-26-319)

An authenticated command injection vulnerability in the customLocation parameter of Kemp LoadMaster carries a CVSS score of 8.8. While…

May 27, 2026views - 8

CYBERSECZERO-DAY

Adobe ColdFusion: Security Update Addresses Reported Authentication Bypass

Advisory ZDI-26-263 describes a reported remote authentication bypass in Adobe ColdFusion. With a CVSS score of 6.5, the vulnerability…

May 27, 2026views - 24