Skip to main content

Progress LoadMaster Command Injection Under Active Mass Exploitation from 792 Attack IPs (CVE-2026-8037)

Scope: Progress LoadMaster (All Versions Prior to GA 7.2.63.2 and LTSF 7.2.54.18)

Microsoft Defender ShieldBreak CISA KEV Deadline Today as Lazarus Group Exploitation Confirmed (CVE-2026-69414)

Scope: Microsoft Defender for Windows (All Versions on Windows 10, Windows 11, Windows Ser

14,530 Dahua CCTV Cameras and NVRs Compromised in Active Campaign Using Authentication Bypass Flaws

Scope: Dahua IP Cameras, NVRs, and DVRs (All Models Running Unpatched Firmware)

Adobe Commerce and Magento Unauthenticated Customer Account Hijacking Now Under Active Exploitation (CVE-2026-71362)

Scope: Adobe Commerce and Magento Open Source (All Supported Versions Prior to August 2026

CISA Orders Emergency Patching of Four Critical Flaws Including Microsoft IKE, SharePoint, VMware, and macOS by August 21 (CVE-2026-33824 and Others)

Scope: Microsoft IKE Service Extensions, Microsoft SharePoint Server, VMware vCenter, Appl

Microsoft SharePoint Complete Unauthenticated RCE Chain Now Fully Patched Across Two Patch Tuesdays (CVE-2026-55040 / CVE-2026-63520)

Scope: Microsoft SharePoint Server Subscription Edition, SharePoint Server 2019, and Share

Microsoft Officially Assigns CVE to ShieldBreak Zero-Day as Patch Development Confirmed (CVE-2026-69414)

Scope: Microsoft Defender for Windows (All Versions on Windows 10, Windows 11, Windows Ser

Subscribe to Advisories