Skip to content
LEARN

Learning Resources

Expand your knowledge with our curated content.

Vulnerabilities (CVE)

Actively exploited or maximum-severity vulnerabilities.

Actively exploitedCVSS 10.0EPSS 0.43

CVE-2026-21962Remote compromise in Oracle HTTP Server and WebLogic Proxy

oracle:http_serveroracle:weblogic_server_proxy_plug-in
BackendciberseguridadCloudJavaLinuxWindows

Oracle HTTP Server and Oracle Weblogic Server Proxy Plug-in contain an improper access control vulnerability that can result in unauthorized creation, deletion or modification access to critical data as well as unauthori…

Analysis

Oracle HTTP Server y el plug-in de proxy para WebLogic presentan una falla crítica de control de acceso que permite a atacantes no autenticados comprometer el servidor y manipular datos de forma remota. Esta vulnerabilidad está siendo explotada activamente en entornos que utilizan Apache o IIS como front-end para servidores WebLogic. Es vital actualizar las instalaciones de Fusion Middleware para evitar el acceso no autorizado a sistemas internos y bases de datos conectadas.

Added to KEV: 2026-08-24View details
Actively exploitedCVSS 8.9

CVE-2026-73570Command Injection RCE in Zimbra Collaboration

synacor:zimbra_collaboration_suite
BackendciberseguridadCloudLinux

Zimbra Collaboration Suite (ZCS) contains an OS command injection vulnerability which could allow an unauthenticated attacker to send specially crafted SMTP requests that may result in execution of arbitrary operating sy…

Analysis

Zimbra Collaboration Suite es vulnerable a la ejecución remota de comandos (RCE) sin autenticación debido a una sanitización insuficiente en las notificaciones SNMP. Los atacantes pueden ejecutar código arbitrario en el servidor mediante peticiones SMTP especialmente diseñadas. Esta vulnerabilidad está confirmada como activamente explotada en ataques reales.

Added to KEV: 2026-08-21View details
Actively exploitedCVSS 9.0

CVE-2026-72530Unauthenticated RCE in TrueConf Server

trueconf:trueconf_server
CyberSecurityBackendWindowsLinuxDocker

TrueConf Server contains a code injection vulnerability that could allow an unauthorized remote attacker with network access via port 4307/TCP to use a specially crafted script to break out of the isolated environment an…

Analysis

TrueConf Server is vulnerable to unauthenticated remote code execution (RCE). An attacker can escape the isolated environment via port 4307/TCP and execute arbitrary code on the underlying host system.

Added to KEV: 2026-08-20View details
Actively exploitedCVSS 9.8

CVE-2026-72529Unauthenticated RCE in TrueConf Server

trueconf:trueconf_server
BackendCyberSecurityWindowsLinuxCloud

TrueConf Server contains a missing authentication for critical function vulnerability which could allow a remote unauthorized attacker with network access via port 4307/TCP to execute an arbitrary script.

Analysis

TrueConf Server versions up to 5.5.5 are vulnerable to unauthenticated remote script execution via port 4307/TCP. An attacker can execute arbitrary commands by calling an undocumented function without valid credentials.

Added to KEV: 2026-08-20View details
Actively exploitedCVSS 9.3EPSS 0.16

CVE-2026-64849Unauthenticated SSRF in MLflow

lfprojects:mlflow
PythonIADataScienceMachineLearningCloudBackend

MLflow contains a server-side request forgery vulnerability that can allow attackers to reach internal or cloud metadata services and receive response_status and response_body.

Analysis

MLflow is vulnerable to an unauthenticated Server-Side Request Forgery (SSRF) via its webhook testing endpoint. Attackers can exploit this to reach internal services or cloud metadata endpoints (IMDS) and view response bodies, potentially leading to credential theft.

Added to KEV: 2026-08-19View details
Actively exploitedCVSS 9.8EPSS 0.10

CVE-2026-65400Authentication bypass in Apple Screen Sharing for macOS

apple:macos
MacosCyberSecurity

Apple macOS contains an improper authentication vulnerability that could allow an attacker on the network to authenticate to Screen Sharing without valid credentials.

Analysis

A critical authentication bypass in macOS Screen Sharing allows an attacker on the same network to gain control of a machine without valid credentials. Users should update to macOS Sequoia 15.7.9, Sonoma 14.8.9, or Tahoe 26.6.1 immediately.

Added to KEV: 2026-08-18View details

Documents

Workshops, presentations, and demos.

No resources available yet.

Courses

Complete course books and recommended external courses.

HomeEventsBlogResources
CoursesTeam