● On the wire
Vulnerability Data Enrichment for CVE Records: 266 CNAs on the Enrichment Recognition List for…//Debian PHP 8.4 Critical Denial of Service SQL Injection Issues DSA-6406-1//Cisco IOS XE Software Web-Based Management Interface Denial of Service Vulnerability//Debian Incus Significant Privilege Escalation Vulnerabilities DSA-6407-1//Debian libgd2 Important Denial of Service CVE-2026-9672//Debian Chromium Important Code Execution Denial of Service DSA-6408-1//Cisco IOS XE Software Blocks Extensible Exchange Protocol Denial of Service Vulnerability//Debian Trixie Linux Kernel Security Notice DSA-6405-1 Privilege Escalation//Ubuntu 22.04 LTS Linux Kernel Critical Security Update 2026-8620-3//Cisco Secure Firewall Management Center Software Authentication Bypass Vulnerability//Patch In, Exploit Out: How deepsec Reconstructed the Pwn2Own Microsoft Edge Sandbox Escape//Cisco Integrated Management Controller Cross-Site Scripting Vulnerability//Debian aom Critical Denial of Service CVE-2026-56208 DSA-6411-1//LLM Heist: Hijacking LiteLLM for Traffic Interception, Key Theft, and Tool-Call Injection//Cisco IOS Software and IOS XE Software Extensible Messaging Client Protocol Denial of Service Vulnerability//Vulnerability Data Enrichment for CVE Records: 266 CNAs on the Enrichment Recognition List for…//Debian PHP 8.4 Critical Denial of Service SQL Injection Issues DSA-6406-1//Cisco IOS XE Software Web-Based Management Interface Denial of Service Vulnerability//Debian Incus Significant Privilege Escalation Vulnerabilities DSA-6407-1//Debian libgd2 Important Denial of Service CVE-2026-9672//Debian Chromium Important Code Execution Denial of Service DSA-6408-1//Cisco IOS XE Software Blocks Extensible Exchange Protocol Denial of Service Vulnerability//Debian Trixie Linux Kernel Security Notice DSA-6405-1 Privilege Escalation//Ubuntu 22.04 LTS Linux Kernel Critical Security Update 2026-8620-3//Cisco Secure Firewall Management Center Software Authentication Bypass Vulnerability//Patch In, Exploit Out: How deepsec Reconstructed the Pwn2Own Microsoft Edge Sandbox Escape//Cisco Integrated Management Controller Cross-Site Scripting Vulnerability//Debian aom Critical Denial of Service CVE-2026-56208 DSA-6411-1//LLM Heist: Hijacking LiteLLM for Traffic Interception, Key Theft, and Tool-Call Injection//Cisco IOS Software and IOS XE Software Extensible Messaging Client Protocol Denial of Service Vulnerability//
Check Point SmartConsole: bypass di autenticazione attivamente sfruttato
Top story — News

Check Point SmartConsole: authentication bypass actively exploited

Check Point has fixed a critical vulnerability in the SmartConsole login process, tracked as CVE-2026-16232, which allows an unauthenticated attacker to obtain an application token and gain access with full administrative privileges. Reports indicate that the bug is already being exploited in the wild, although the direct impact currently concerns only a limited number of customers. The flaw affects Security…

Read the article →
From the newsroom
Spotlight
More news