THREAT OPS › Threat News
Threat Intelligence News
12103 reports from 110+ open cyber-threat-intelligence sources — APT activity, malware, vulnerabilities and campaigns, newest first.
- [CRPxO] Performance Data Solutions posted to leak siteransomware_live · 2026-07-27
- [CRPxO] Host & Protect (RedBlink) posted to leak siteransomware_live · 2026-07-27
- [CRPxO] RnnR Cloud posted to leak siteransomware_live · 2026-07-27
- [CRPxO] CodeConductor.ai posted to leak siteransomware_live · 2026-07-27
- [CRPxO] Prei Capital posted to leak siteransomware_live · 2026-07-27
- [CRPxO] FLP Law Group LLP posted to leak siteransomware_live · 2026-07-27
- [CRPxO] Summit Hill Insurance posted to leak siteransomware_live · 2026-07-27
- [CRPxO] MRO Aerospace posted to leak siteransomware_live · 2026-07-27
- Microsoft Edge Multiple Vulnerabilitieshkcert · 2026-07-27
- [incransom] takethehop.com posted to leak siteransomware_live · 2026-07-27
- [Global Secret Group] Park Manufacturing Corp. posted to leak siteransomware_live · 2026-07-27
- Inside Elastic InfoSec's agentic SOC: How we cut AI agent LLM calls by 60%elastic_security · 2026-07-27
- [CISA KEV] CVE-2025-68686 — Fortinet FortiOS: Fortinet FortiOS Exposure of Sensitive Information to an Unauthorized Actor Vulnerabilitycisa_kev · 2026-07-27
- [CISA KEV] CVE-2026-16812 — Arista VeloCloud Orchestrator: Arista VeloCloud Orchestrator On-Prem OS Command Injection Vulnerabilitycisa_kev · 2026-07-27
- [Breach] RingCentral — 1,596,490 accounts exposedhibp_breaches · 2026-07-27
- [ExfilSquad] Wesco International posted to leak siteransomware_live · 2026-07-26
- [Global Secret Group] Hinduja Tech | BMW Group & Škoda Auto posted to leak siteransomware_live · 2026-07-26
- Sponsored: How AI is putting pressure on EDRriskybiz_news · 2026-07-26
- [Global Secret Group] Pro-Tuff | Decals posted to leak siteransomware_live · 2026-07-26
- [Deadlock] High Class Car Limo posted to leak siteransomware_live · 2026-07-26
- [anubis] Eagle Crest Communities posted to leak siteransomware_live · 2026-07-26
- [Global Secret Group] Spergel posted to leak siteransomware_live · 2026-07-26
- [Deadlock] West African Resources ltd posted to leak siteransomware_live · 2026-07-26
- [Deadlock] Caspian One posted to leak siteransomware_live · 2026-07-26
- [Global Secret Group] Prism Telecom posted to leak siteransomware_live · 2026-07-26
- [Global Secret Group] Cipher Dynamics posted to leak siteransomware_live · 2026-07-26
- [Global Secret Group] Stratos Network posted to leak siteransomware_live · 2026-07-26
- Scans for ESAFENET CDG 3 Document Management System Weak Logins, (Sun, Jul 26th)sans_isc · 2026-07-26
- Malvertising Sends Malware in Pieces, Then Makes the Browser Build the Executablethehackernews · 2026-07-25
- Fastjson 1.x RCE Vulnerability Targeted in Attacks With No Patched Availablethehackernews · 2026-07-25
- [NVD] CVE-2026-64523 (CRITICAL 9.8) — In the Linux kernel, the following vulnerability has been resolved: net/handshake: Take a long-lived file reference at submit handshake_nl_accept_doit() needs the file pointer backing req->hr_sk->sk_socket to survive the window between handshake_req_next() and the subsequent FDnvd · 2026-07-25
- [NVD] CVE-2026-64427 — In the Linux kernel, the following vulnerability has been resolved: HID: logitech-dj: Fix maxfield check in DJ short report validation Commit b6a57912854e ("HID: logitech-dj: Prevent REPORT_ID_DJ_SHORT related user initiated OOB write") added validation for the DJ short output nvd · 2026-07-25
- [NVD] CVE-2026-64425 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: io_uring/io-wq: re-check IO_WQ_BIT_EXIT for each linked work item commit 10dc95939817 ("io_uring/io-wq: check IO_WQ_BIT_EXIT inside work run loop") fixed the obvious case where io_worker_handle_work() took one nvd · 2026-07-25
- [NVD] CVE-2026-64424 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: netpoll: fix a use-after-free on shutdown path There is a use-after-free error on netpoll, which is clearly detected by KASAN. BUG: KASAN: slab-use-after-free in _raw_spin_lock_irqsave+0x3b/0x80 Renvd · 2026-07-25
- [NVD] CVE-2026-64406 (HIGH 8.0) — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: fix UAF in bt_accept_dequeue() bt_accept_get() takes a temporary reference before dropping the accept queue lock. bt_accept_dequeue() currently drops that reference before bt_accept_unlink(), leavingnvd · 2026-07-25
- [NVD] CVE-2026-64405 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: Fix null ptr deref in hci_abort_conn() hci_abort_conn() read hci_skb_event(hdev->sent_cmd) when a connection was pending, but hdev->sent_cmd can be NULL while req_status is still HCI_REQ_PEnvd · 2026-07-25
- [NVD] CVE-2026-64394 (HIGH 8.8) — In the Linux kernel, the following vulnerability has been resolved: ksmbd: add a WRITE_DAC/WRITE_OWNER check to SMB2 SET_INFO SECURITY commit cc57232cae23 ("ksmbd: fix FSCTL permission bypass by adding a permission check for FSCTL_SET_SPARSE") added a fp->daccess gate to fsctl_nvd · 2026-07-25
- [NVD] CVE-2026-64393 (CRITICAL 9.1) — In the Linux kernel, the following vulnerability has been resolved: ksmbd: run set info with opener credentials SMB2 SET_INFO handlers call path-based VFS helpers after checking the access mask granted to the SMB handle. Those helpers perform their owner, inode permission and Lnvd · 2026-07-25
- [NVD] CVE-2026-64392 (CRITICAL 9.1) — In the Linux kernel, the following vulnerability has been resolved: ksmbd: use opener credentials for delete-on-close Delete-on-close can be completed by deferred or durable handle teardown, where no request work is available. Both the base-file unlink and the ADS xattr removalnvd · 2026-07-25
- [NVD] CVE-2026-64391 (CRITICAL 9.8) — In the Linux kernel, the following vulnerability has been resolved: ksmbd: use opener credentials for ADS I/O Alternate data streams are stored as xattrs. Unlike regular file I/O, their read and write paths therefore call VFS xattr helpers which recheck inode permissions and LSnvd · 2026-07-25
- [NVD] CVE-2026-64390 (HIGH 8.8) — In the Linux kernel, the following vulnerability has been resolved: ksmbd: track the connection owning a byte-range lock SMB2_LOCK adds each granted byte-range lock to both the file lock list and the lock list of the connection which handled the request. The final close and dunvd · 2026-07-25
- [NVD] CVE-2026-64389 (HIGH 8.2) — In the Linux kernel, the following vulnerability has been resolved: ksmbd: validate NTLMv2 response before updating session key ksmbd_auth_ntlmv2() derives the NTLMv2 session key into sess->sess_key before it verifies the NTLMv2 response. ksmbd_decode_ntlmssp_auth_blob() then cnvd · 2026-07-25
- [NVD] CVE-2026-64388 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: smb/client: fix chown/chgrp with SMB3 POSIX Extensions Ownership (chown) and group (chgrp) modifications were being ignored when mounting with SMB3 POSIX Extensions unless CIFS_MOUNT_CIFS_ACL or CIFS_MOUNT_MODEnvd · 2026-07-25
- [NVD] CVE-2026-64387 (CRITICAL 9.8) — In the Linux kernel, the following vulnerability has been resolved: smb: client: fix query directory replay double-free A response-bearing attempt can return a replayable error and free its response buffer. If SMB2_query_directory_init() fails before the next send, cleanup retanvd · 2026-07-25
- [NVD] CVE-2026-64386 (CRITICAL 9.8) — In the Linux kernel, the following vulnerability has been resolved: smb: client: fix query_info() replay double-free A response-bearing attempt can return a replayable error and free its response buffer. If SMB2_query_info_init() fails before the next send, cleanup retains the nvd · 2026-07-25
- [NVD] CVE-2026-64385 (CRITICAL 9.8) — In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double-free in SMB2_ioctl() replay A response-bearing attempt can return a replayable error and free its response buffer. If SMB2_ioctl_init() fails before the next send, cleanup retains the prnvd · 2026-07-25
- [NVD] CVE-2026-64384 (CRITICAL 9.8) — In the Linux kernel, the following vulnerability has been resolved: smb: client: fix change notify replay double-free A response-bearing attempt can return a replayable error and free its response buffer. If SMB2_notify_init() fails before the next send, cleanup retains the prenvd · 2026-07-25
- [NVD] CVE-2026-64383 (CRITICAL 9.8) — In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double-free in SMB2_flush() replay SMB2_flush() keeps its response buffer bookkeeping across replay attempts. If a replayable flush response is received and the retry then fails before cifs_sennvd · 2026-07-25
- [NVD] CVE-2026-64382 (HIGH 8.8) — In the Linux kernel, the following vulnerability has been resolved: smb: client: fix double-free in SMB2_open() replay A response-bearing attempt can return a replayable error and free its response buffer. If SMB2_open_init() fails before the next send, cleanup retains the prevnvd · 2026-07-25
- [NVD] CVE-2026-64370 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: posix-cpu-timers: Fix pid refcount leak in do_cpu_nanosleep() error path In do_cpu_nanosleep(), posix_cpu_timer_create() takes a pid reference via get_pid() and stores it in timer.it.cpu.pid. If the subsequent nvd · 2026-07-25
- [NVD] CVE-2026-64369 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: s390: Revert support for DCACHE_WORD_ACCESS load_unaligned_zeropad() reads eight bytes from unaligned addresses and may cross page boundaries. It handles exceptions which may happen if reading from the second pnvd · 2026-07-25
- [NVD] CVE-2026-64368 (HIGH 8.1) — In the Linux kernel, the following vulnerability has been resolved: mm/slab: do not limit zeroing to orig_size when only red zoning is enabled When init (zeroing) on allocation is requested, for kmalloc() we generally have to zero the full object size even if a smaller size is nvd · 2026-07-25
- [NVD] CVE-2026-64367 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: HID: hid-goodix-spi: validate report size to prevent stack buffer overflow goodix_hid_set_raw_report() builds a protocol frame in a 128-byte stack buffer (tmp_buf), writing an 11-12 byte header followed by the nvd · 2026-07-25
- [NVD] CVE-2026-64366 (HIGH 8.8) — In the Linux kernel, the following vulnerability has been resolved: HID: wacom: fix slab-out-of-bounds write in wacom_wac_queue_insert wacom_wac_queue_insert() calls kfifo_skip() in a loop when the kfifo doesn't have enough space for the incoming report. If the kfifo is empty, nvd · 2026-07-25
- [NVD] CVE-2026-64365 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: HID: letsketch: fix UAF on inrange_timer at driver unbind letsketch_driver does not provide a .remove callback, but letsketch_probe() arms a per-device timer: timer_setup(&data->inrange_timer, letsketch_innvd · 2026-07-25
- [NVD] CVE-2026-64364 (HIGH 8.8) — In the Linux kernel, the following vulnerability has been resolved: HID: multitouch: fix out-of-bounds bit access on mt_io_flags mt_io_flags is a single unsigned long, but mt_process_slot(), mt_release_pending_palms() and mt_release_contacts() use it as a per-slot bitmap indexenvd · 2026-07-25
- [NVD] CVE-2026-64363 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: HID: appleir: fix UAF on pending key_up_timer in remove() appleir_remove() runs hid_hw_stop() before timer_delete_sync(). hid_hw_stop() synchronously unregisters the HID input device via hid_disconnect() -> hidnvd · 2026-07-25
- [NVD] CVE-2026-64362 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: HID: lg-g15: cancel pending work on remove to fix a use-after-free lg_g15_data is allocated with devm and holds a work item. The report handlers schedule that work straight from device input. lg_g15_event() andnvd · 2026-07-25
- [NVD] CVE-2026-64361 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: hfs/hfsplus: fix u32 overflow in check_and_correct_requested_length check_and_correct_requested_length() compares (off + len) against node_size using u32 arithmetic. When the caller passes a large len value (envd · 2026-07-25
- [NVD] CVE-2026-64360 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: hfs/hfsplus: zero-initialize buffer in hfs_bnode_read hfs_bnode_read() can return early without writing to the output buffer when is_bnode_offset_valid() fails or when check_and_correct_requested_ length() corrnvd · 2026-07-25
- [NVD] CVE-2026-64359 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: nilfs2: reject CLEAN_SEGMENTS ioctl with out-of-range segment numbers Syzbot reported a hung task in nilfs_transaction_begin() where multiple tasks performing chmod() on a nilfs2 mount blocked for over 143 seconvd · 2026-07-25
- [NVD] CVE-2026-64358 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: media: mtk-jpeg: cancel workqueue on release for supported platforms only Since a recent fix the mtk_jpeg_release function cancels any pending or running work present in the driver workqueue using cancel_work_snvd · 2026-07-25
- [NVD] CVE-2026-64357 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: xfs: fix exchmaps reservation limit check xfs_exchmaps_estimate_overhead() adds the bmbt and rmapbt overhead to a local resblks variable, but the final UINT_MAX check still tests req->resblks. That is the resenvd · 2026-07-25
- [NVD] CVE-2026-64356 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: xfs: fix memory leak in xfs_dqinode_metadir_create() If xfs_metadir_create() fails in xfs_dqinode_metadir_create(), the current code returns directly, leaking the allocated update and transaction state. If the nvd · 2026-07-25
- [NVD] CVE-2026-64355 (CRITICAL 9.8) — In the Linux kernel, the following vulnerability has been resolved: bpf: Reject fragmented frames in devmap Devmap broadcast redirects clone the packet for all but the last destination. For native XDP, that clone path copies only the linear xdp_frame data, while fragmented franvd · 2026-07-25
- [NVD] CVE-2026-64354 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: bpf: Validate BTF repeated field counts before expansion btf_parse_struct_metas() walks user-supplied BTF during BPF_BTF_LOAD, and btf_repeat_fields() expands repeatable fields from array elements into the fixenvd · 2026-07-25
- [NVD] CVE-2026-64336 — In the Linux kernel, the following vulnerability has been resolved: USB: serial: keyspan_pda: fix information leak The write() callback is supposed to return the number of characters accepted or a negative errno. Since the addition of write fifo support the keyspan_pda implemennvd · 2026-07-25
- [NVD] CVE-2026-64330 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: usb: typec: tcpm: Validate SVID index in svdm_consume_modes() In svdm_consume_modes(), the SVID value is read from pmdata->svids using pmdata->svid_index as an array index without bounds validation: paltmonvd · 2026-07-25
- [NVD] CVE-2026-64329 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: usb: typec: ucsi: ccg: Fix use-after-free of ucsi on remove The threaded IRQ handler ccg_irq_handler() calls ucsi_notify_common(), which on a connector-change event calls ucsi_connector_change() and schedules cnvd · 2026-07-25
- [NVD] CVE-2026-64328 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Fix DMA fence leak In ffs_dmabuf_transfer(), a ffs_dma_fence object is kmalloc'd, with the underlying dma_fence later initialized by dma_fence_init(), which sets its kref counter to 1. Then, nvd · 2026-07-25
- [NVD] CVE-2026-64327 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: usb: gadget: f_fs: Initialize epfile->in early to fix endpoint direction checks When parsing endpoint descriptors, ffs_data_got_descs() generates the eps_addrmap which contains the endpoint direction. However, nvd · 2026-07-25
- [NVD] CVE-2026-64326 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: block: skip sync_blockdev() on surprise removal in bdev_mark_dead() bdev_mark_dead()'s @surprise == true means the device is already gone. The filesystem callback fs_bdev_mark_dead() honours this and skips syncnvd · 2026-07-25
- [NVD] CVE-2026-64325 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: wifi: mt76: mt7921/mt7925: fix NULL dereference in CSA beacon This patch is based on a BUG as reported by Bongani Hlope at https://lore.kernel.org/all/20260502125824.425d7159@bongani-mini.home.org.za/ When a cnvd · 2026-07-25
- [NVD] CVE-2026-64324 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: udf: validate free block extents against the partition length udf_free_blocks() checks the logical block number and count against the partition length, but drops the extent offset from that final bound. A crafnvd · 2026-07-25
- [NVD] CVE-2026-64323 (HIGH 7.1) — In the Linux kernel, the following vulnerability has been resolved: udf: validate VAT header length against the VAT inode size udf_load_vat() takes the virtual partition's start offset straight from the on-disk VAT 2.0 header without checking it against the VAT inode size: manvd · 2026-07-25
- [NVD] CVE-2026-64322 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: udf: validate sparing table length as an entry count, not a byte count udf_load_sparable_map() accepts a sparing table when sizeof(*st) + le16_to_cpu(st->reallocationTableLen) > sb->s_blocksize is false, i.envd · 2026-07-25
- [NVD] CVE-2026-64321 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: nvme: target: rdma: fix ndev refcount leak on queue connect nvmet_rdma_queue_connect() calls nvmet_rdma_find_get_device() which acquires a reference on the returned ndev via kref_get(). On the path where the honvd · 2026-07-25
- [NVD] CVE-2026-64310 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - Do not initialize SNP for SEV ioctls Sashiko notes: > if SEV initialization fails and KVM is actively running normal VMs, could a > userspace process trigger this code path via /dev/sev ioctls (envd · 2026-07-25
- [NVD] CVE-2026-64309 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - Do not initialize SNP for ioctl(SNP_COMMIT) Sashiko notes: > if SEV initialization fails and KVM is actively running normal VMs, could a > userspace process trigger this code path via /dev/sev ionvd · 2026-07-25
- [NVD] CVE-2026-64308 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - Do not initialize SNP for ioctl(SNP_VLEK_LOAD) Sashiko notes: > if SEV initialization fails and KVM is actively running normal VMs, could a > userspace process trigger this code path via /dev/sevnvd · 2026-07-25
- [NVD] CVE-2026-64307 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - Do not initialize SNP for ioctl(SNP_CONFIG) Sashiko notes: > if SEV initialization fails and KVM is actively running normal VMs, could a > userspace process trigger this code path via /dev/sev ionvd · 2026-07-25
- [NVD] CVE-2026-64306 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: crypto: drbg - Fix returning success on failure in CTR_DRBG drbg_ctr_generate() sometimes returns success when it fails, leaving the output buffer uninitialized. Fix it.nvd · 2026-07-25
- [NVD] CVE-2026-64305 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: crypto: qat - protect service table iterations with service_lock The service_table list is protected by service_lock when entries are added or removed (in adf_service_add() and adf_service_remove()), but severanvd · 2026-07-25
- [NVD] CVE-2026-64304 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: crypto: qat - validate RSA CRT component lengths The generic RSA key parser (rsa_helper.c) bounds each CRT component (p, q, dp, dq, qinv) by the modulus size n_sz, but qat_rsa_setkey_crt() allocates half-size Dnvd · 2026-07-25
- [NVD] CVE-2026-64303 (CRITICAL 9.8) — In the Linux kernel, the following vulnerability has been resolved: spi: fsl-lpspi: terminate the RX channel on TX prepare failure path When dmaengine_prep_slave_sg() fails for the TX channel, the error path terminates the TX DMA channel but leaves the RX channel running. Sincenvd · 2026-07-25
- [NVD] CVE-2026-64302 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: x86/mm: Fix freeing of PMD-sized vmemmap pages Commit bf9e4e30f353 ("x86/mm: use pagetable_free()"), switched from freeing non-boot page tables through __free_pages() to pagetable_free(). However, the functionnvd · 2026-07-25
- [NVD] CVE-2026-64301 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: regulator: scmi: fix of_node refcount leak in scmi_regulator_probe() scmi_regulator_probe() calls of_find_node_by_name() which takes a reference on the returned device node. On the error path where process_scminvd · 2026-07-25
- [NVD] CVE-2026-64300 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: perf/aux: Fix page UAF in map_range() map_range() reads rb->aux_pages[], rb->aux_nr_pages and rb->aux_pgoff via perf_mmap_to_page() while holding only event->mmap_mutex. Those fields are serialized by rb->aux_mnvd · 2026-07-25
- [NVD] CVE-2026-64299 (HIGH 7.1) — In the Linux kernel, the following vulnerability has been resolved: tracing: Prevent out-of-bounds read in glob matching String event fields are not necessarily NUL-terminated, so the filter predicate functions (filter_pred_string(), filter_pred_strloc() and filter_pred_strrellnvd · 2026-07-25
- [NVD] CVE-2026-64294 (MEDIUM 5.5) — In the Linux kernel, the following vulnerability has been resolved: mm: do file ownership checks with the proper mount idmap Ever since idmapped mounts were introduced, inode ownership checks (for side-channel protection) in mincore() and madvise(MADV_PAGEOUT) were done againstnvd · 2026-07-25
- [NVD] CVE-2026-64290 — In the Linux kernel, the following vulnerability has been resolved: iommufd: Break the loop on failure in iommufd_fault_fops_read() On a copy_to_user() failure inside the inner list_for_each_entry, only the inner loop breaks; the outer while re-fetches the just-restored fault gnvd · 2026-07-25
- [NVD] CVE-2026-64280 (HIGH 8.8) — In the Linux kernel, the following vulnerability has been resolved: fpga: dfl-afu: validate DMA mapping length in afu_dma_map_region() afu_ioctl_dma_map() accepts a 64-bit length from userspace via DFL_FPGA_PORT_DMA_MAP ioctl without an upper bound check. The value is passed tonvd · 2026-07-25
- [NVD] CVE-2026-64272 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: Input: mms114 - fix touch indexing for MMS134S and MMS136 The MMS134S and MMS136 touch controllers have an event size of 6 bytes rather than 8 bytes. When __mms114_read_reg() reads the touch data packet from thnvd · 2026-07-25
- [NVD] CVE-2026-64270 (HIGH 7.8) — In the Linux kernel, the following vulnerability has been resolved: Input: mms114 - reject an oversized device packet size mms114_interrupt() reads a packet of touch data from the device into a fixed-size on-stack buffer struct mms114_touch touch[MMS114_MAX_TOUCH]; which holnvd · 2026-07-25
- [NVD] CVE-2026-64269 (CRITICAL 9.1) — In the Linux kernel, the following vulnerability has been resolved: RDMA/rtrs-srv: Bound RDMA-Write length to chunk size in rdma_write_sg When the server answers an RTRS READ, rdma_write_sg() builds the source scatter/gather entry for the IB_WR_RDMA_WRITE that returns data to tnvd · 2026-07-25
- Researcher Publishes GitLab RCE PoC Letting Authenticated Users Run Commands as Gitthehackernews · 2026-07-25
- CTM360 Research Reveals How Insurance Phishing Has Evolved Into Real-Time Account Hijackingthehackernews · 2026-07-25
- Cl0p Affiliates Target Internet-Exposed PTC Windchill and FlexPLM with Unauthenticated RCEthehackernews · 2026-07-25
- DevMan RaaS Portal Centralizes Payload Builds, Victim Management, and Affiliate Payoutsthehackernews · 2026-07-25
- [NVD] CVE-2026-61884 (CRITICAL 9.8) — The Tycon Systems TPDIN-Monitor-WEB2 ships without HTTP credentials configured, intended for an installer to set them on first use. On firmware 2.4.4 and earlier, a unit left in this unconfigured state serves the web management interface without requiring any login. An attacker wnvd · 2026-07-24