Tagged: Unauthenticated RCE
Servers for developing AI applications have become vaults of valuable secrets, accessible through a single unprotected request. Attackers have begun exploiting the critical vulnerability CVE-2026-0768 in Langflow to extract OpenAI and AWS keys, administrator...
Threat actors began probing SAP Commerce Cloud systems for a critical vulnerability just three days after a patch became available. DefusedCyber reported detecting the first exploitation attempts against CVE-2026-58231 within its honeypot systems on...
A single crafted network request can transform a Palo Alto Networks firewall from a security boundary into an entry point. A vulnerability in PAN-OS allows a remote, unauthenticated attacker to disrupt device operation and...