The LegacyHive vulnerability enables privilege escalation on Windows 10 2004+ and Windows Server 2022; an unofficial micropatch from ACROS Security is available, with an official CVE and update pending.
Attackers are actively exploiting two zero-day vulnerabilities in SonicWall SMA1000, with at least one classified as critical and identified as an SSRF flaw.
A validation flaw in WordPress’s REST Batch API enables pre-authentication remote code execution with full control over website, database, and hosting environment.
An indexing flaw in the REST batch endpoint allows unauthenticated attackers to gain complete control over WordPress installations, but requires immediate patching to version 6.9.5 or 7.0.2.
The wp2shell core vulnerability in WordPress 6.9 and 7.0 enables code execution through anonymous HTTP requests and has been patched by security updates 6.9.5 and 7.0.2 with forced auto-updates.
Three SharePoint vulnerabilities (CVE-2026-332201, CVE-2026-45659, CVE-2026-56164) are actively exploited in the wild — patching is necessary, but network segmentation is critical to limit impact.
A publicly disclosed zero-day exploit (Legacyhive) allows Windows users to obtain administrative privileges and is currently not being addressed by a Microsoft patch.
Progress has confirmed a critical zero-day vulnerability in ShareFile Storage Zone Controller and is releasing patches requiring immediate attention from CISOs.