Threat Alerts

Real-time critical CVE alerts, security advisories, and vulnerability intelligence — curated by the Vulnios Threat Intelligence team.

500 Critical
0 High
500 Total Alerts
Follow on TelegramSubscribe via RSS
Filter:
500 alerts
criticalCVE Alert
CVE-2026-61800

Critical Vulnerability: CVE-2026-61800

Wazuh is an open-source security platform providing unified XDR and SIEM protection for endpoints and cloud workloads. In versions 4.4.0 through 4.14.6, a party holding the cluster key can write, over

criticalrce
Aug 28 · 2:18 AM
Read analysis
criticalVendor Advisory

Chrome for Android Update

Google Chrome Releases published an advisory on "Chrome for Android Update". Topic areas: google, chrome, browser, patch. Published August 27, 2026. See the original source linked under References for

Google· Chrome, Chrome 153
googlechromebrowser
Aug 28 · 1:13 AM
Read analysis
criticalCVE Alert
CVE-2026-76943

Critical Vulnerability: CVE-2026-76943

Xiiaozet LK100Wt contains an authentication weakness within an administrative service that may allow an attacker to bypass intended access controls and obtain command execution capabilities. Success

critical
Aug 28 · 12:18 AM
Read analysis
criticalCVE Alert
CVE-2026-69658

Critical Vulnerability: CVE-2026-69658

MQTT credentials and control traffic are transmitted in cleartext, exposing sensitive information to network-level attackers. This may enable unauthorized device impersonation and disruption of mess

critical
Aug 28 · 12:18 AM
Read analysis
criticalCVE Alert
CVE-2026-50152

Critical Vulnerability: CVE-2026-50152

Ceph is an open-source distributed storage platform providing object, block, and file storage. In versions prior to 20.2.4 and 19.2.6, the Monitor subscription handler fails to properly authorize acce

critical
Aug 28 · 12:18 AM
Read analysis
criticalCVE Alert
CVE-2026-73125

Critical Vulnerability: CVE-2026-73125

Ebyte device web management interface does not consistently enforce authentication before granting access to administrative functionality. An unauthenticated remote attacker could access sensitive c

critical
Aug 28 · 12:18 AM
Read analysis
criticalCVE Alert
CVE-2026-78239

Critical Vulnerability: CVE-2026-78239

Xiiaozet LK100W exposes a critical management function that can be invoked without authentication, allowing a remote attacker to enable administrative services that should be restricted. Successful

critical
Aug 28 · 12:18 AM
Read analysis
criticalCVE Alert
CVE-2026-76179

Critical Vulnerability: CVE-2026-76179

An improper protection of authentication tokens vulnerability exists in certain Ebyte gateway products. Authentication tokens used by the web management interface are insufficiently protected during

critical
Aug 28 · 12:18 AM
Read analysis
criticalCVE Alert
CVE-2026-71187

Critical Vulnerability: CVE-2026-71187

The Ebyte device relies on client side authentication logic that can be reproduced by unauthenticated users. An attacker may generate valid authentication requests and bypass authentication to obtai

critical
Aug 28 · 12:18 AM
Read analysis
criticalVendor Advisory
CVE-2026-53224CVE-2026-53246CVE-2026-53247

USN-8643-5: Linux kernel vulnerabilities

Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Network drivers; -

Linux
ubuntulinuxpatch
Aug 27 · 11:04 PM
Read analysis
criticalVendor Advisory
CVE-2026-43071CVE-2026-52914CVE-2026-52993

USN-8644-3: Linux kernel (Azure) vulnerabilities

Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - File systems infra

Linux
ubuntulinuxpatch
Aug 27 · 11:04 PM
Read analysis
criticalVendor Advisory
CVE-2026-53224CVE-2026-53246CVE-2026-64531

USN-8658-4: Linux kernel (Azure CVM) vulnerabilities

Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Open vSwitch; - SC

Linux
ubuntulinuxpatch
Aug 27 · 11:04 PM
Read analysis

Protect Your Organization

Monitor CVEs, scan for vulnerabilities, and get real-time threat alerts — all in one platform.