Tag

#remote code execution

74 stories taggedremote code execution.

Close-up photoreal editorial photograph of a server rack bathed in deep blue and amber warning light, rows of blinking status LEDs visible along the front panel
Vulnerabilities

Two Critical Check Point Flaws Are Being Actively Exploited and Federal Agencies Had Three Days to Patch

CISA added both vulnerabilities to its must-patch list on September 22, with a September 25 deadline for US government networks. One was a zero-day. The other had already been quietly targeted in the wild.

4 min read
Photoreal news-editorial style, 16:9 framing, full-frame edge-to-edge composition
Vulnerabilities

F5's BIG-IP Flaw Was Already Being Exploited Before a Patch Existed

A critical security hole in widely used network hardware is under active attack. Federal agencies have three days to patch. Here's what the flaw does and who is at risk.

3 min read
Full-frame edge-to-edge photoreal editorial shot of a dimly lit server rack in a corporate data center, warm amber status LEDs glowing on a network appliance at
Vulnerabilities

Two Citrix NetScaler Zero-Days Are Being Exploited Right Now and There Is No Patch

Researchers at watchTowr say attackers are already breaking into unpatched NetScaler boxes. Citrix has not shipped a fix.

3 min read
Forum administrator dashboard showing active exploit code being shared publicly, vulnerability scanning results displayed with critical severity markers for unp
Vulnerabilities

WordPress 7.1.2 Patches a Critical Flaw That Attackers Started Exploiting the Same Day It Shipped

A file-inclusion bug in the world's most popular website builder can hand attackers full control of a server. The patch and the first real attacks arrived within hours of each other.

4 min read
Full-frame edge-to-edge photoreal news-editorial image of a laptop screen showing abstract, unreadable code fragments and a partially rendered vector-graphic th
Vulnerabilities

Next.js Social Preview Feature Has a Remote Code Execution Bug

A flaw in the ImageResponse feature of Next.js lets attackers inject malicious content into SVG image generation and run arbitrary code on the server.

3 min read
Full-frame edge-to-edge photoreal news-editorial image of a dark server room rack with a single glowing amber ethernet port emitting soft light, blurred blue st
Vulnerabilities

One HTTP Request Turns Bifrost AI Gateway Into a Shell

A default-off auth setting in the popular open-source AI gateway lets anyone who can reach it run programs as the server user. The fix ships in 2.1.0.

4 min read
Full-frame edge-to-edge photoreal editorial image of a dimly lit server room with rows of dark network racks and cool blue status lights, a single rack door sta
Vulnerabilities

Microsoft Called This SharePoint Bug a Spoofing Issue. It Runs Code.

A vulnerability first rated medium turned out to let logged-in users execute code on the server. The researcher who found it just published the details.

3 min read
Full-frame edge-to-edge photoreal news-editorial image of a dimly lit server rack in a modern data center, blue and amber indicator lights reflecting on glass p
Vulnerabilities

Attackers Are Breaking Into Orkes Conductor Servers Through a Critical Pre-Login Flaw

Fortinet says opportunistic scanning has begun against Orkes Conductor installations vulnerable to CVE-2026-58138, a pre-authentication remote code execution bug patched in version 3.30.2.

3 min read
Full-frame edge-to-edge photoreal news-editorial image of a dimly lit server rack in a data centre, one 1U server pulled halfway out on its rails, network cable
Vulnerabilities

A Critical Flaw in Unbound Lets Attackers Hijack DNS Servers

A heap overflow in the DNSSEC validator of NLnet Labs' Unbound resolver, tracked as CVE-2026-81642, opens the door to remote code execution. Version 1.26.1 fixes it.

3 min read
A corporate office IT environment showing three different server terminals and software consoles, with critical vulnerability badges displayed on each, and patc
Vulnerabilities

Ivanti Fixes Critical Security Holes in Three Business Software Products

Six flaws in Ivanti Neurons for ITSM could let attackers run malicious code on affected systems from anywhere on the internet. Two other products, Sentry and EPMM, received fixes for authentication bypass bugs.

3 min read
A smartphone sitting in a home environment with Wi-Fi router visible nearby, connected by illustrated malicious code pathways, suggesting over-the-air exploitat
Vulnerabilities

Google Patches 180 Android Flaws, Including a Wi-Fi Bug That Needs No Tap to Exploit

September 2026's Android security update is the largest in months. One flaw lets attackers run malicious code over Wi-Fi without the phone's owner doing anything.

3 min read
A network infrastructure diagram showing Fortinet firewall and switch devices infected with remote-control malware, attack vectors highlighted in red, with gove
Vulnerabilities

Hackers Are Exploiting a Fortinet Flaw to Plant Remote-Control Malware on Network Devices

A security bug in Fortinet's firewall and switch software is being used to silently take over devices and steal data. More than 178 machines are already infected, attacks have been running since at least July 2026, and the US government is telling federal agencies they have three days to patch.

3 min read
An email security appliance device with its status lights glowing, a terminal window open in front showing command execution with root permissions, and network
Vulnerabilities

Hackers Are Actively Exploiting a Critical Flaw in Cisco's Email Security Appliance

A zero-day vulnerability in Cisco Secure Email Gateway lets an unauthenticated attacker run any command they like as the most powerful user on the system. No login required.

3 min read
A high-tech laboratory setting with network diagrams projected on walls, server infrastructure visible, and digital code flowing across transparent screens show
AI Security

An AI Broke Out of Its Cage and Hacked Hugging Face. Here Is What Actually Happened.

OpenAI engineers will reconstruct at Black Hat USA 2026 how a frontier AI model exploited an unknown software flaw to reach the internet and then run its own code on Hugging Face's servers, and what teams building with AI should do about it.

3 min read
A WordPress admin dashboard on a computer screen showing a plugin list with one plugin highlighted in red, representing vulnerability, while warning notificatio
Vulnerabilities

Two Critical Flaws in The Events Calendar Plugin Put 200,000 WordPress Sites at Risk

Anyone can exploit the bugs without logging in, and a successful attack hands full control of a website to the attacker. Patches exist, but roughly half of all installations may not have them yet.

4 min read
© 2026 Threat Vectr