search
CVE
Trends
- 1Cisco zero-day in Catalyst SD-WAN Manager exploited via single encoded character●Discover how a single encoded character exploited a critical Cisco zero-day vulnerability in the Catalyst SD-WAN Manager
A critical zero-day vulnerability, tracked as CVE-2026-76504, in Cisco's Catalyst SD-WAN Manager reportedly allowed attackers to gain administrative access by sending a single encoded character. Security commentators are highlighting how minimal the exploit requirement was, raising concerns about unpatched SD-WAN deployments and urging administrators to apply fixes and review exposure.
- 2Critical Command Injection Flaw Reported in Fortra BoKS Privileged Access Manager●CVE-2026-9862: Critical OS Command Injection Vulnerability in Fortra BoKS Core Privileged Access Manager Threatens System Security
A critical vulnerability, tracked as CVE-2026-9862, has been disclosed in Fortra's BoKS Core Privileged Access Manager, involving OS command injection. The flaw could allow attackers to execute arbitrary system commands on affected servers, making privileged access infrastructure itself a target. Security teams are expected to assess exposure and apply patches once Fortra provides fixes and guidance.
- 3GitLab Patches Critical AI Gateway Vulnerability CVE-2026-90970●CVE-2026-90970: Critical GitLab AI Gateway Flaw Fixed
GitLab has fixed a critical vulnerability, tracked as CVE-2026-90970, affecting its AI Gateway component. Security outlets are urging users to update their deployments promptly, as flaws in AI gateway infrastructure could expose sensitive data or allow unauthorized access. Administrators are advised to review the advisory and apply the patch as soon as possible.