A permissions flaw in Acronis Backup’s cPanel/WHM plugin and Plesk extension lets a local user, such as a hosting customer, escalate to root or admin-level control on shared servers.
Every CISA KEV addition, plus critical-severity flaws in the kit that sits at the edge of a network: firewalls, VPN gateways, load balancers, routers, switches and management consoles.
Colour on the left of each entry is the CVSS severity. A pink CISA KEV badge means the flaw is being exploited right now — treat those first, whatever the score says. How each post is sourced and checked is set out in the methodology.
Cisco Identity Services Engine Incorrect Use of Privileged APIs Vulnerability
An unauthenticated attacker can bypass login on Cisco ISE and ISE-PIC’s web management interface and gain access to the device outright, with no patch yet available.
Google Pixel Improper Authorization Vulnerability
A logic flaw in the Pixel cellular modem lets someone with radio-level proximity bypass permission checks and escalate privileges without any user interaction, and it’s already being exploited.
Cisco Secure Email Gateway SQL Injection Vulnerability
An unauthenticated attacker can send a single crafted email to a Cisco Secure Email Gateway and gain root control of the appliance through a SQL injection flaw in its message-parsing logic.
Cisco IOS XR Software Security Hardening Release: September 2026
A single Cisco advisory bundles seven internally-found IOS XR flaws by weakness class, two of them unauthenticated and remotely exploitable for full device compromise, with fixes spread across dozens of per-train SMUs.
ConnectWise ScreenConnect Improper Privilege Management and Missing Authorization Vulnerability
A flaw in ScreenConnect client software lets an attacker inside an active remote support session push files to the host and run them without the usual confirmation prompt.
GitLab Community Edition and Enterprise Edition Path Traversal Vulnerability
GitLab Community Edition and Enterprise Edition contains a path traversal vulnerability that allows an unauthenticated user to read arbitrary files due to an improper path confinement and missing …
JFrog Artifactory Improper Authentication Vulnerability
Artifactory can hand an unauthenticated caller a valid anonymous-user token even after anonymous access has been switched off, letting anyone who can reach it read sensitive artefacts.
JFrog Artifactory Incorrect Authorization Vulnerability
Artifactory checks a token’s signature and issuer but not its scope, letting a low-privilege token holder escalate to actions the token was never meant to permit.
MikroTik RouterOS Improper Neutralization of Argument Delimiters in a Command Vulnerability
A crafted username at the RouterOS SSH prompt lets an unauthenticated attacker rewrite the router’s permission mask and take full control, with no credentials needed.