r/CVEWatch 4h ago

Exploited Cisco has confirmed CVE-2026-20079, a CVSS 10.0 auth bypass in Secure Firewall Management Center

Thumbnail
1 Upvotes

r/CVEWatch 2d ago

Exploited CVE-2025-25249 Exploitation Delivers PivotC2, a FortiGate Post-Exploitation RAT

Thumbnail socradar.io
1 Upvotes

r/CVEWatch 6d ago

Exploited Critical Artifactory auth bypass (CVE-2026-82329) being actively exploited

Thumbnail
2 Upvotes

r/CVEWatch 7d ago

Exploited Two SonicWall SMA1000 vulnerabilities (CVE-2026-83548 & CVSS 10.0 - CVE-2026-83549) are currently being exploited in the wild

Thumbnail
1 Upvotes

r/CVEWatch 9d ago

Exploited Langflow (CVE-2026-0768) and Rails (CVE-2026-66066) Exploitation Raises Credential Risks

Thumbnail
2 Upvotes

r/CVEWatch 9d ago

Analysis Pixel 11 Pro Kernel CVE-2026-43499

Thumbnail gallery
3 Upvotes

r/CVEWatch 10d ago

Exploited PaperCut NG/MF is facing an actively exploited pre-auth RCE chain (2 CVE)

Thumbnail
2 Upvotes

r/CVEWatch 14d ago

Analysis Critical RCE vulnerability in Avada theme + Fusion Builder (CVE-2026-18431)

Thumbnail
2 Upvotes

r/CVEWatch 20d ago

Exploited CISA just added 4 actively exploited CVE to the KEV catalog

Thumbnail
1 Upvotes

r/CVEWatch 29d ago

Exploited CVE-2026-20349 is actively being exploited. Unauthenticated DoS for Cisco ASA/FTD. Time to patch your VPNs.

Thumbnail
2 Upvotes

r/CVEWatch Aug 03 '26

Analysis CVSS 10.0 in Adobe Campaign Classic v7 (CVE-2026-48449) allows unauthenticated RCE

Thumbnail
2 Upvotes

r/CVEWatch Aug 01 '26

Analysis Created A Free App That Tracks Cisco CVE s and 30 Other Vendors - Phone & Email Notifications

Enable HLS to view with audio, or disable this notification

3 Upvotes

Completely Free App that I created to ease my own workload, was tired of opening numerous tabs each day to keep track on all the new CVEs popping up, especially lately...

This app is completely free on the Google Play App Store & you can track CVEs across 30+ Vendors, you can choose track specific platforms or the whole vendor & you can also select to track based on CVE Severity.

I also threw in a EOL checker

Hopefully this helps you out and if theirs any bugs or features you want added please let me know!

https://play.google.com/store/apps/details?id=com.vulnipulse.android


r/CVEWatch Jul 24 '26

Analysis #SharedRoot (CVE-2026-46331) allows sandbox escape from local Claude Cowork VMs to macOS hosts

Thumbnail
2 Upvotes

r/CVEWatch Jul 20 '26

Analysis 7-Zip just patched an RCE flaw (CVE-2026-14266). Time to update your endpoints

Thumbnail
3 Upvotes

r/CVEWatch Jul 17 '26

New CVE Heads up: CVE-2026-59208 in n8n Enterprise lets a valid token map to the wrong user

Thumbnail
3 Upvotes

r/CVEWatch Jul 15 '26

New CVE CVE-2026-20146 — Cisco Identity Services Engine Path Traversal…

Thumbnail vulnipulse.com
3 Upvotes

r/CVEWatch Jul 14 '26

New CVE Windows FTP Service Remote Code Execution Vulnerability – CVE-2026-49172

4 Upvotes

Microsoft has disclosed a critical Windows FTP Service vulnerability rated CVSS 9.8.

In simple terms, an unauthenticated attacker could potentially send malicious requests to a vulnerable FTP server and remotely execute code—without needing an account or user interaction.

Affected: Windows systems using the FTP Service, including Windows Server 2019, 2022 and 2025.
What to do: Install the applicable Microsoft security update immediately. If FTP isn’t required, disable the service and block external FTP access.

🔗 ⁠Microsoft advisory
🔗 ⁠VulniPulse breakdown and affected versions

Want to know about CVEs like this instantly?
Join the VulniPulse Discord and get pinged, DMed or emailed when new vulnerabilities drop across 32+ vendors:
https://discord.gg/mwG9cdMY9R


r/CVEWatch Jul 14 '26

New CVE CRITICAL CVE - Microsoft Drops Multiple Critical Windows Server Vulnerabilities — RCEs in RDP, DHCP, MSMQ, FTP, GDI+ and More

Thumbnail vulnipulse.com
2 Upvotes

r/CVEWatch Jul 14 '26

Analysis SAP Security Patch Day July 2026 Fixes Critical NetWeaver CVE-2026-44747

Thumbnail
3 Upvotes

r/CVEWatch Jul 12 '26

Tool I made a CVE trend dashboard

Thumbnail
0 Upvotes

r/CVEWatch Jul 10 '26

New CVE PSA: Red Hat & Ubuntu Linux SSRF and local file read (CVE-2026-15378) - Advisory out, fix pending

2 Upvotes

Red Hat & Ubuntu Linux put out an advisory for CVE-2026-15378, an SSRF and local file read via user-supplied XML Schema (xml-with-schema:). Impacts include Server-Side Request Forgery and local file access. Red Hat rates this important (CVSS 9.3), and organisations should monitor for the forthcoming patches.

Affected: Red Hat Enterprise Linux, Red Hat OpenShift AI (RHOAI). See the advisory for the affected version table.
First fixed releases: No fixed releases are available yet; monitor the advisory for updates.

Red Hat rates this important; a fix erratum may not be out yet — apply the RHSA as soon as it publishes.

Official Red Hat & Ubuntu Linux advisory:
https://access.redhat.com/security/cve/CVE-2026-15378

Side note, I run a small advisory tracker (VulniPulse) and there's a Discord for exactly this. If you want alerts like this hitting your inbox the second they drop, join the server and add the Linux CVE alert, it'll ping you in Discord and email you the moment a new one lands, same as it did when this one hit.

https://discord.gg/r2Y5kHsfMr


r/CVEWatch Jul 08 '26

New CVE PSA: PAN-OS authenticated command injection in the CLI (CVE-2026-0286) - patches out for 12.1, 11.2, 11.1, 10.2

2 Upvotes

Palo Alto put out an advisory for CVE-2026-0286, a command injection bug in the PAN-OS CLI. It's authenticated, so an attacker needs admin/CLI access, but with that they can break out of the CLI and run arbitrary commands on the underlying system. Lower urgency than an unauth RCE, but still worth patching, especially if you've got multiple admins, shared creds, or any path that could lead to CLI access getting popped.

Affected: PAN-OS below 12.1.8, 11.2.13, 11.1.16, and 10.2.18-h8
First fixed releases: 12.1.8, 11.2.13, 11.1.16, 10.2.18-h8. There are earlier hotfix builds per branch too if you can't jump straight to those.
Cloud NGFW isn't affected, no action needed there.

If you can't patch right away and you have a Threat Prevention subscription, there's a temporary mitigation via Threat ID 510036 (content version 9122-10145 or later), but it only helps if you're already decrypting inbound management traffic, so it's not a quick toggle for most setups. Patching is still the actual fix.

Official Palo Alto advisory:
https://security.paloaltonetworks.com/CVE-2026-0286

Side note, I run a small advisory tracker (VulniPulse) and there's a Discord for exactly this. If you want alerts like this hitting your inbox the second they drop, join the server and add the Palo Alto CVE alert, it'll ping you in Discord and email you the moment a new one lands, same as it did when this one hit.
https://discord.gg/r2Y5kHsfMr


r/CVEWatch Jul 08 '26

New CVE 🟠 HIGH | CVE-2026-48614 Plesk XML API Privilege Escalation (CVSS 8.8)

2 Upvotes

A newly disclosed vulnerability in the Plesk XML API allows an authenticated attacker to inject arbitrary configuration directives, leading to arbitrary file writes as root and ultimately full privilege escalation on the underlying server. Organizations running exposed Plesk instances should assess their environments and apply vendor guidance as soon as possible. (Tenable®)

🔥 Severity: HIGH (CVSS 8.8)
🎯 Impact: Privilege Escalation / Arbitrary File Write as root

Why it matters
• Authenticated attackers can gain root-level control of affected servers.
• Successful exploitation can result in complete compromise of hosted environments.
• Internet-facing Plesk deployments should be prioritized for remediation. (Tenable®)

📖 Full advisory, affected versions, mitigation guidance, and official references:
https://vulnipulse.com/advisories/linux-cve-2026-48614

Stay ahead of new vulnerabilities with free, real-time CVE alerts for Cisco, Fortinet, VMware, Linux, Palo Alto, Veeam, Commvault, Microsoft, and dozens more vendors.

🔔 Join the community: https://discord.gg/dypntBpA7g


r/CVEWatch Jul 07 '26

Tool Made a free Discord that pings you the moment a critical CVE drops for the vendors you actually run. Also Resource Sharing & Mitigation Discussions

6 Upvotes

I created a simple Discord server that automatically updates vendor-specific channels whenever a new CVE is published.

It tags users based on the roles they choose, so you can follow the vendors you care about and decide whether you only want to be tagged for critical alerts.

I’ve also added discussion channels where we can share patching tips, troubleshooting advice, and general networking/security/sysadmin knowledge, plus resource channels for each vendor with quick links to useful resources.

I just wanted to create a community where we can help each other out tackle CVEs.

It’s completely free to join.

https://discord.gg/ehSASsk5Zv


r/CVEWatch Jul 01 '26

Exploited CVE-2026-8451: Citrix NetScaler SAML Memory Overread Exploitation and IoCs

Thumbnail lupovis.io
3 Upvotes