// 1 CRITICAL · 6 ZERO-DAY · 8 CVE · 6 EXPLOIT IN THE LAST 24H
CYBERSECCRITICAL

SEPPMail Security Crisis: Seven Critical Flaws Grant Full Access to Corporate Email

A cluster of seven vulnerabilities in the SEPPMail Secure E-Mail Gateway, including flaws with CVSS scores up to 10.0, enables unauthe…

May 19, 2026views - 294

roboticsCVE

CVE-2026-8153: Universal Robots Cobots Vulnerable to Unauthenticated RCE

An OS command injection vulnerability in the PolyScope 5 Dashboard Server enables unauthenticated remote code execution on Universal R…

May 19, 2026views - 152

VULNCVE

18-Year-Old NGINX Bug CVE-2026-42945 Under Active Attack

Exploitation attempts are underway for CVE-2026-42945, an 18-year-old heap buffer overflow in the NGINX rewrite module. The flaw enabl…

May 19, 2026views - 149

cveCVE

NGINX Rift: Active Exploitation of CVE-2026-42945 Detected In the Wild

In-the-wild attacks targeting CVE-2026-42945 (NGINX Rift) began on May 16, 2026. Security researchers analyze the critical heap buffer…

May 19, 2026views - 160

VULNCVE

CVE-2026-42945: Active Exploitation of NGINX Servers Underway

CVE-2026-42945 is being actively exploited in the wild, targeting NGINX rewrite modules to trigger immediate DoS or conditional RCE. C…

May 18, 2026views - 154

VULNEXPLOIT

NGINX Rift: Critical CVE-2026-42945 Exploitation Detected In-the-Wild

The NGINX Rift vulnerability (CVE-2026-42945) has seen active exploitation since May 16, leveraging a long-dormant heap buffer overflo…

May 18, 2026views - 128

VULNCRITICAL

Safari Regex Engine Vulnerability Allows Remote Code Execution via Duplicate Named Groups

Apple has patched a high-severity (CVSS 8.8) remote code execution vulnerability in Safari. The flaw involves a heap-based buffer over…

May 18, 2026views - 114

CYBERSECCVE

GitHub Enterprise RCE: Critical Vulnerability (CVE-2026-3854) Demands Immediate Updates

A flaw in GitHub’s push options handling allows for Remote Code Execution on Enterprise Server instances. With technical details now p…

May 17, 2026views - 173

CYBERSECCRITICAL

Ivanti Releases May 2026 Security Updates: Seven CVEs and a Critical SQLi-to-RCE Vulnerability

On May 13, 2026, Ivanti patched seven security flaws across four enterprise products, including a critical SQL injection-to-RCE in its…

May 17, 2026views - 194

zeroZERO-DAY

Palo Alto Networks Zero-Day: PAN-OS Vulnerability Grants Attackers Root Perimeter Control

CVE-2026-0300 enables unauthenticated root RCE on PAN-OS firewalls. With CISA Mandating mitigation within three days, we analyze the e…

May 16, 2026views - 230