⤷ Title: PoC Releases for CVE-2026-63077: TeamCity RCE Exploited in the Wild
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 10 Aug 2026 01:01:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_63077 #exploited in the wild #JetBrains #Remote Code Execution #TeamCity #unsafe deserialization
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 10 Aug 2026 01:01:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_63077 #exploited in the wild #JetBrains #Remote Code Execution #TeamCity #unsafe deserialization
Daily CyberSecurity
PoC Releases for CVE-2026-63077: TeamCity RCE Exploited in the Wild
TL;DR CVE-2026-63077 is a critical unauthenticated remote code execution flaw in JetBrains TeamCity. An attacker who reaches the server can run OS commands without credentials. CISA confirmed the …
⤷ Title: Multiple ClamAV Flaws Let Remote Attackers Cause DoS
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 08 Aug 2026 07:36:00 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #antivirus #cisco #ClamAV #CVE_2026_20337 #Denial of Service #Secure Endpoint
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Sat, 08 Aug 2026 07:36:00 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #antivirus #cisco #ClamAV #CVE_2026_20337 #Denial of Service #Secure Endpoint
Daily CyberSecurity
Multiple ClamAV Flaws Let Remote Attackers Cause DoS
TL;DR Cisco disclosed seven ClamAV vulnerabilities on August 7, 2026. Each lets an unauthenticated remote attacker crash the scanner with a crafted file. The result is a denial of service that sto…
⤷ Title: CVE-2026-5430: WSO2 Account Takeover Flaws Rated Up to CVSS 10
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 07 Aug 2026 13:04:08 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Takeover #API Manager #Authentication Bypass #CVE_2026_1728 #CVE_2026_5430 #privilege escalation #WSO2
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 07 Aug 2026 13:04:08 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Takeover #API Manager #Authentication Bypass #CVE_2026_1728 #CVE_2026_5430 #privilege escalation #WSO2
Daily CyberSecurity
CVE-2026-5430: WSO2 Account Takeover Flaws Rated Up to CVSS 10
TL;DR WSO2 disclosed four critical vulnerabilities across its API and identity products. Several are WSO2 account takeover flaws. The worst, CVE-2026-5430, scores a maximum 10 through a JWT authen…
⤷ Title: Tails 7.10.1 Fixes Critical Linux Kernel Vulnerability
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 07 Aug 2026 10:21:37 +0000
════════════════════════
⌗ Tags: #Linux #CVE_2026_64560 #expat #Linux Kernel #privacy OS #tails #Tails 7.10.1
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 07 Aug 2026 10:21:37 +0000
════════════════════════
⌗ Tags: #Linux #CVE_2026_64560 #expat #Linux Kernel #privacy OS #tails #Tails 7.10.1
Daily CyberSecurity
Tails 7.10.1 Fixes Critical Linux Kernel Vulnerability
The Tails project shipped Tails 7.10.1 as an emergency release on August 5, 2026. This update addresses two critical security flaws – one in the Linux kernel and one in the expat XML library…
⤷ Title: CVE-2026-66747: Zbtlink Router Backdoor ENDLESSDOORS Enables Unauthenticated Remote Code Execution as Root
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 07 Aug 2026 02:30:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_66747 #ENDLESSDOORS #IOT #OpenWrt #router backdoor #ZBT #Zbtlink
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 07 Aug 2026 02:30:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_66747 #ENDLESSDOORS #IOT #OpenWrt #router backdoor #ZBT #Zbtlink
Daily CyberSecurity
CVE-2026-66747: Zbtlink Router Backdoor ENDLESSDOORS Enables Unauthenticated Remote Code Execution as Root
TL;DR VulnCheck found a Zbtlink router backdoor in every published firmware build across the product line. Named ENDLESSDOORS and tracked as CVE-2026-66747, it scores 9.8 on CVSS. It hands unauthe…
⤷ Title: CVE-2026-64561: Zapscape KVM Escape Runs Commands With Kernel Root Privilege, PoC Exploit Code Publicly Disclosed
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 07 Aug 2026 02:04:24 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_64561 #guest_to_host escape #KVM #Linux Kernel #use after free #virtualization #Zapscape
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Fri, 07 Aug 2026 02:04:24 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_64561 #guest_to_host escape #KVM #Linux Kernel #use after free #virtualization #Zapscape
Daily CyberSecurity
CVE-2026-64561: Zapscape KVM Escape Runs Commands With Kernel Root Privilege, PoC Exploit Code Publicly Disclosed
TL;DR Security researcher Hyunwoo Kim (@v4bel) disclosed a KVM escape vulnerability named Zapscape. Tracked as CVE-2026-64561, it lets a guest break out to the host. The attacker can then run comm…
⤷ Title: CVE-2026-10090: Red Hat ACM Privilege Escalation Flaw Grants Cluster-Admin, Rated CVSS 9.9
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 10 Aug 2026 13:37:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ACM #Cluster Admin #CVE_2026_10090 #Helm #Kubernetes #privilege escalation #red hat
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 10 Aug 2026 13:37:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ACM #Cluster Admin #CVE_2026_10090 #Helm #Kubernetes #privilege escalation #red hat
Daily CyberSecurity
CVE-2026-10090: Red Hat ACM Privilege Escalation Flaw Grants Cluster-Admin, Rated CVSS 9.9
TL;DR Red Hat disclosed a critical privilege escalation flaw in Advanced Cluster Management (ACM) for Kubernetes. Tracked as CVE-2026-10090, it scores 9.9 on CVSS. A user with only namespace edit …
⤷ Title: CVE-2026-5423: Authentication Bypass Hits Neo4j GraphQL Subscriptions
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 10 Aug 2026 13:30:34 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2026_5423 #GraphQL security #JWT #Neo4j GraphQL
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 10 Aug 2026 13:30:34 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2026_5423 #GraphQL security #JWT #Neo4j GraphQL
Daily CyberSecurity
CVE-2026-5423: Authentication Bypass Hits Neo4j GraphQL Subscriptions
TL;DR A high-severity authentication bypass affects the Neo4j GraphQL Library before versions 7.5.6 and 5.12.14. Tracked as CVE-2026-5423 (CVSS 8.2), it lets an unauthenticated attacker forge JWT …
⤷ Title: CVE-2026-43074: Linux Kernel eventpoll Use-After-Free Gives a Root Shell, PoC Exploit Code Publicly Disclosed
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 10 Aug 2026 12:55:37 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #android #CVE_2026_43074 #eventpoll #Linux Kernel #Pixel #privilege escalation #use after free
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 10 Aug 2026 12:55:37 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #android #CVE_2026_43074 #eventpoll #Linux Kernel #Pixel #privilege escalation #use after free
Daily CyberSecurity
CVE-2026-43074: Linux Kernel eventpoll Use-After-Free Gives a Root Shell, PoC Exploit Code Publicly Disclosed
TL;DR A Linux kernel eventpoll flaw lets a local user climb to root. Tracked as CVE-2026-43074, it scores 7.3 on CVSS. Researchers confirmed a working root shell on a Pixel 10 Pro. The full detail…
⤷ Title: Three Critical Wazuh Manager Flaws Disclosed With Public PoC Exploit Code
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 11 Aug 2026 01:30:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #cluster protocol #CVE_2026_48024 #CVE_2026_48162 #CVE_2026_49441 #Root RCE #Wazuh vulnerability
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 11 Aug 2026 01:30:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #cluster protocol #CVE_2026_48024 #CVE_2026_48162 #CVE_2026_49441 #Root RCE #Wazuh vulnerability
Daily CyberSecurity
Three Critical Wazuh Manager Flaws Disclosed With Public PoC Exploit Code
TL;DR Three critical Wazuh manager vulnerabilities now have public advisories and proof-of-concept exploit code. Each scores CVSS 9.1 and abuses the cluster protocol. Any peer holding the shared F…