cve-2026-42945
76 articles with this tag
✨
AI summary
Loading…
HIGH
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
INFO
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
USN-8375-1: nginx vulnerabilities
Google June 2026 Android Update Patches 124 Flaws, One Actively Exploited
Oracle WebLogic CVE-2024-21182 Added to KEV Catalog After Active Exploitation
Gamaredon Exploits WinRAR to Deliver GammaWorm and GammaSteel Against Ukraine
AI-Driven Exploitation is Destroying Vulnerability Management. Here’s How to Handle It.
How Leading Organizations Are Turning EDR Into Operational Resilience
Pakistan-Linked SideCopy Targets Afghanistan Finance Ministry with Xeno RAT
Dashlane Discloses Brute-Force Attack, Encrypted Vaults of Fewer Than 20 Users Downloaded
Miasma Supply Chain Attack Compromises Red Hat npm Packages with Credential-Stealing Worm
May 2026 Fixes
China-Aligned Groups Ramp Up Attacks: Dragon Weave Hits Czech Republic & Taiwan
OpenAI Codex Authentication Tokens Stolen in codexui-android npm Supply Chain Attack
Critical WP Maps Pro Flaw Actively Exploited to Create Admin Accounts
Dutch Authorities Dismantle Botnet Linked to 17 Million Infected Devices
PAN-OS GlobalProtect Authentication Bypass (CVE-2026-0257) Under Active Exploitation
Attackers Use LLM Agent for Post-Exploitation After Marimo CVE-2026-39987 Exploit
New Russian-Linked GREYVIBE Targets Ukraine with AI-Powered Cyberattacks
What 2,000 Exposed Vibe-Coded Apps Reveal About the Limits of Most Security Stacks
Malicious Sicoob NuGet Steals Banking Credentials as npm Packages Target Cloud Secrets
Kimsuky Deploys HTTPSpy, Expands Arsenal with HelloDoor and VS Code Tunnels
Critical Gogs RCE Vulnerability Lets Any Authenticated User Execute Arbitrary Code
Threat Actors Exploit Critical FortiClient EMS Flaw to Deploy Credential Stealer
Microsoft Slams Public Zero-Day Disclosures Amid GitHub Researcher Account Removal
JINX-0164 Targets Cryptocurrency Firms with Fake Recruiter Lures and macOS Malware
Malicious npm Package Stole Files From Claude AI User Directory via GitHub
Grandoreiro Malware and BTMOB RAT Campaigns Target Windows and Android Users
3 SOC Steps that Shut Down Incident Risks Early
GlassWorm Malware Takedown Disrupts Developer Supply Chain Attack Infrastructure
Gitea Vulnerability Exposes Private Container Images without Authentication
AI Chatbot Recommendations Redirect Users to Cryptojacking Malware Sites
MuddyWater Uses DLL Side-Loading in Espionage Campaign Targeting 9 Countries
Bulletin d'actualité CERTFR-2026-ACT-023 (26 mai 2026)
Microsoft Patches SharePoint RCE Flaw CVE-2026-45659 Across Server Versions
MFA Prompt Bombing: Why Your Second Factor Isn't Saving You
CERT-In Mandates 12-Hour Patching for Internet-Facing Flaws Amid AI-Assisted Attacks
Iranian Hackers Deploy MiniFast and MiniJunk V2 via Phishing and SEO Poisoning
KnowledgeDeliver LMS Flaw Exploited to Deploy Godzilla and Cobalt Strike
The Alert Firehose Finally Meets Its Match
Ghost CMS CVE-2026-26980 Exploited to Hijack 700+ Sites for ClickFix Attacks
Lazarus Deploys RemotePE Memory-Only RAT Against Financial and Crypto Firms
TrapDoor Supply Chain Attack Spreads Credential-Stealing Malware via npm, PyPI, and CratesIO
Automated vulnerability intel, using Hermes AI
RHSA-2026:19371: Critical: nginx:1.24 security update
RHSA-2026:19372: Critical: nginx:1.26 security update
RHSA-2026:19374: Critical: nginx security update
RHSA-2026:19159: Critical: nginx security update
Multiples vulnérabilités dans les produits Microsoft (19 mai 2026)
DSA-6278-1 nginx - security update
Critical bug in F5 NGINX actively exploited
18th May – Threat Intelligence Report
RHSA-2026:18041: Critical: nginx:1.24 security update
RHSA-2026:18063: Critical: nginx security update
RHSA-2026:18029: Critical: nginx security update
Attackers are exploiting critical NGINX vulnerability (CVE-2026-42945)
NGINX Rift attackers waste no time targeting exposed servers
Bulletin d'actualité CERTFR-2026-ACT-022 (18 mai 2026)
Exploitation of Critical NGINX Vulnerability Begins
NGINX CVE-2026-42945 Exploited in the Wild, Causing Worker Crashes and Possible RCE
PoC Code Published for Critical NGINX Vulnerability
CVE-2026-42945 NGINX ngx_http_rewrite_module vulnerability
RHSA-2026:17794: Critical: nginx security update
RHSA-2026:17792: Critical: nginx security update
RHSA-2026:17790: Critical: nginx security update
RHSA-2026:17793: Critical: nginx:1.24 security update
RHSA-2026:17791: Critical: nginx security update
Multiples vulnérabilités dans les produits F5 (15 mai 2026)
RHSA-2026:17752: Critical: nginx:1.24 security update
RHSA-2026:17753: Critical: nginx:1.26 security update
RHSA-2026:17751: Critical: nginx security update
Critical 'NGINX Rift' vulnerability discovered, present for 18 years
AI agent finds 18-year-old remote code execution flaw in Nginx
18-year-old NGINX vulnerability allows DoS, potential RCE
USN-8271-1: nginx vulnerability
F5 Patches Over 50 Vulnerabilities
CVE-2026-42945 : NGINX Heap Buffer Overflow in rewrite module - Writeup and PoC
18-Year-Old NGINX Rewrite Module Flaw Enables Unauthenticated RCE