mitre-t1068
1455 articles with this tag
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
MEDIUM
MEDIUM
CRITICAL
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
MEDIUM
CRITICAL
HIGH
HIGH
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
HIGH
CRITICAL
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
MEDIUM
HIGH
HIGH
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
MEDIUM
CRITICAL
CRITICAL
HIGH
MEDIUM
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
CRITICAL
CRITICAL
MEDIUM
HIGH
HIGH
HIGH
MEDIUM
HIGH
MEDIUM
HIGH
CRITICAL
HIGH
CRITICAL
MEDIUM
MEDIUM
CRITICAL
HIGH
HIGH
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
CRITICAL
HIGH
CRITICAL
CRITICAL
HIGH
MEDIUM
JFrog Confirms OpenAI Models Exploited Artifactory Zero-Day Before Hugging Face Breach
Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays
[NEU] [hoch] Apple macOS (Tahoe, Sonoma und Sequoia): Mehrere Schwachstellen
Researcher Says AI Helped Develop Linux Traffic-Control Race Into Root Exploit
USN-8618-1: Linux kernel vulnerabilities
USN-8617-1: Linux kernel (KVM) vulnerabilities
USN-8616-1: Linux kernel (IBM) vulnerabilities
USN-8615-1: Linux kernel vulnerabilities
NCSC-2026-0265 [1.00] [M/H] Kwetsbaarheden verholpen in SolarWinds Serv-U
AI assistant used in cyberattack on Thailand's Ministry of Finance
US warns of Iran-linked attacks on critical infrastructure
US warns of Iran-linked attacks on critical infrastructure
In Other News: Dolphin X AI-Powered Malware, Car Anti-Theft Device Hack, 400 Linux Kernel Flaws
Multiples vulnérabilités dans les produits ESET (24 juillet 2026)
Vulnérabilité dans les produits Moxa (24 juillet 2026)
NCSC-2026-0264 [1.00] [M/H] Kwetsbaarheden verholpen in Check Point Security Management producten
NodeBB Patches Eight AI-Found Flaws Exposing Admin Access and Private Chats
CVE-2026-56167 Azure AI Search Elevation of Privilege Vulnerability
CVE-2026-56163 Microsoft Azure Kubernetes Service Elevation of Privilege Vulnerability
CVE-2026-56160 Azure Red Hat OpenShift (ARO) Elevation of Privilege Vulnerability
CVE-2026-58275 Azure DNS Elevation of Privilege Vulnerability
OpenAI’s AI “goes rogue” and hacks Hugging Face: what you need to know
[NEU] [hoch] pg_partman: Mehrere Schwachstellen
[NEU] [hoch] n8n: Mehrere Schwachstellen
[NEU] [hoch] Budibase: Mehrere Schwachstellen
[NEU] [mittel] Linux Kernel: Schwachstelle ermöglicht Privilegieneskalation
CVE-2026-12080 Qemu-kvm: qemu-guest-agent: local privilege escalation via symlink attack in guest-ssh-add-authorized-keys
Ubuntu snap-confine vulnerability grants root access
Hugging Face ‘attacker’ revealed to be OpenAI agents that escaped testing sandbox
Ubuntu snap-confine Flaw Could Give Local Users Root on Default Desktop Installs
How an OpenAI benchmark test turned into a real-world cyberattack
RefluXFS: A Linux Kernel Local Privilege Escalation to Root in XFS (CVE-2026-64600)
VU#360868: Analog Way Picturall Quad Compact Mark II contains a local privilege escalation vulnerability
OpenAI model escape puts enterprise AI defenses on notice
[NEU] [hoch] snapd: Mehrere Schwachstellen
Another SharePoint RCE exploited: Patch, then rotate your machine keys (CVE-2026-50522)
Open AI Claims Its AI Models Went Rogue and Hacked Another Company
Ubuntu snap-confine Vulnerability Enables Local Root Access
[NEU] [mittel] Veeam Backup & Replication: Schwachstelle ermöglicht Privilegieneskalation
[NEU] [mittel] Red Hat Enterprise Linux (acl): Mehrere Schwachstellen ermöglichen Privilegieneskalation und Manipulation von Dateien
OpenAI Says Its AI Models Broke Loose and Hacked Hugging Face
OpenAI Says Its AI Models Escaped Sandbox, Targeted Hugging Face to Cheat Benchmark
OpenAI admits it was the source of the agent swarm that attacked Hugging Face
OpenAI says model test was behind Hugging Face hack
OpenAI Models Escaped Containment and Hacked HuggingFace
Siemens IAM Client
CVE-2026-8933: Local Privilege Escalation in Set-Capabilities snap-confine
Critical SharePoint RCE CVE-2026-50522 Under Active Exploitation After Public PoC
Writeup & POC: CVE-2026-49176 Windows WalletService to SYSTEM (LPE)
[NEU] [hoch] Synacor Zimbra: Mehrere Schwachstellen
USN-8574-1: Linux kernel (GCP FIPS) vulnerabilities
Ukraine warns fake CAPTCHAs are being used to make you hack yourself
NCSC-2026-0251 [1.00] [M/H] Kwetsbaarheden verholpen in IBM Langflow OSS
'WP2Shell' Opens Millions of WordPress Sites to Remote Takeover
ServiceNow’s sandbox escape RCE hole now exploited in the wild
USN-8569-1: Linux kernel (HWE) vulnerabilities
USN-8568-1: Linux kernel (OEM) vulnerabilities
USN-8566-1: Linux kernel vulnerabilities
CVE-2024-35248 Microsoft Dynamics 365 Business Central Elevation of Privilege Vulnerability
SonicWall Zero-Days Exploited to Deliver Custom Malware for Weeks Before Patch
Researchers Build WordPress Exploit Using OpenAI's GPT
[NEU] [hoch] Extreme Networks ExtremeXOS: Mehrere Schwachstellen
Escalating All The Privileges With Foxit PDF Reader (CVE-2026–57239)
SonicWall SMA Zero-Days Exploited Before Disclosure to Gain Root Access
wp2shell (CVE-2026-63030) update: public working exploit now available for the WordPress core pre-auth RCE
Proxying to Compromise: SonicWall Secure Mobile Access 0-day Exploitation
Inc Ransomware Exploits SonicWall SMA Zero-Days
Windows AppResolver LPE: From AppContainer to SYSTEM. PoC linked to CVE-2026-50454
Three Steps to the Terminal: A Siemens ROX II Zero-Day Trilogy
CISA Adds Exploited SharePoint RCE Zero-Day CVE-2026-58644 to KEV
SALTO ProAccess Space
HelloNet campaign — new malicious modules launched through the ViPNet update system
USN-8555-1: Ubuntu Advantage Tools (pro client) vulnerabilities
Modular macOS Stealer Uses Kill Loops to Force Password Entry
One-Click Root Exploit Demonstrates Evolving Android Threats
[NEU] [hoch] Wazuh: Mehrere Schwachstellen
[NEU] [mittel] Veeam Backup & Replication (Veeam Updater): Schwachstelle ermöglicht Erlangen von Administratorrechten
Nightmare Eclipse Drops ‘LegacyHive’ Windows Zero-Day
Trend Micro, Tanium, ESET and Tenable Patch Severe Product Vulnerabilities
VU#529388: Privilege escalation vulnerability via unprotected IOCTL interface in Pegatron Tdelo64.sys
CISA Urges Immediate Patching of Exploited SharePoint Vulnerabilities
Vulnérabilité dans Veeam Backup & Replication (15 juillet 2026)
Vulnérabilité dans ESET Inspect Connector (15 juillet 2026)
Multiples vulnérabilités dans Secure Mobile Access (15 juillet 2026)
LegacyHive: 'Bone-shattering' zero-day from Microsoft's serial tormentor not the haymaker that was promised
USN-8548-1: Linux kernel vulnerabilities
[NEU] [hoch] Adobe Magento: Mehrere Schwachstellen
[NEU] [hoch] Adobe ColdFusion: Mehrere Schwachstellen
[NEU] [mittel] Bitdefender Internet und Total Security: Schwachstelle ermöglicht Privilegieneskalation
[NEU] [mittel] Lenovo BIOS: Mehrere Schwachstellen
[NEU] [hoch] Adobe Experience Manager: Mehrere Schwachstellen
[NEU] [mittel] Microsoft Surface: Schwachstelle ermöglicht Erlangen von Administratorrechten
[NEU] [hoch] Microsoft Azure: Mehrere Schwachstellen
[NEU] [mittel] Red Hat Enterprise Linux (libinput): Schwachstelle ermöglicht Privilegieneskalation
Two SonicWall SMA 1000 Zero-Days Exploited, One Could Enable Admin Commands
CVE-2026-47301 Configuration Manager Elevation of Privilege Vulnerability
Microsoft Patches Record 622 Vulnerabilities, Including Two Exploited Zero-Days
CISA Urges SharePoint Hardening After New Exploitations
CVE-2026-55052 Microsoft SharePoint Elevation of Privilege Vulnerability
CVE-2026-50359 Microsoft XML Core Services Elevation of Privilege Vulnerability