ProBackend
Vulnerabilities & Exploits

Vulnerabilities & Exploits

CVEs, zero-days, patching and exploited weaknesses.

vulnerability patch managementJun 25, 20265 min

Active Directory Control Planes at Risk of Remote Takeover via Exposed Netlogon Protocol

An urgent warning from Belgium's national cybersecurity authority reveals that threat actors are actively capitalizing on CVE-2026-41089, a critical stack-based buffer overflow in the Windows Netlogon service allowing unauthenticated remote code execution on Domain Controllers.

cloud security incidentsJun 23, 20265 min

Root RCE via Reflected Configuration Commands: A Technical Breakdown of Ivanti Sentry's Dual Flaws

An analytical breakdown of Ivanti Sentry's CVE-2026-10520 and CVE-2026-10523 vulnerabilities, detailing how a pre-authentication endpoint allowed attackers to execute root-level commands via reflective Java configuration parsing.

cloud security incidentsJun 23, 20265 min

Critical Exploited Zero-Day Found in Oracle PeopleSoft Applications

Oracle has issued emergency mitigations for CVE-2026-35273, a critical zero-day in PeopleSoft PeopleTools currently being exploited by the ShinyHunters extortion group to facilitate large-scale data theft.

cloud security incidentsJun 23, 20263 min

Active Exploitation of Path Traversal in Langflow AI

Exploitation of CVE-2026-5027, a critical path traversal vulnerability in Langflow, is underway, allowing unauthorized file uploads on exposed servers.

cloud security incidentsJun 23, 20263 min

Path-Divergence Vulnerability in Starlette Exposes Python-Based AI Agents to Data Breaches

An in-depth look at CVE-2026-48710 (BadHost), a critical path-divergence vulnerability in the Starlette ASGI framework that allows authentication bypasses and security control evasion across the Python AI ecosystem.

patch management vulnerability remediationJun 23, 20265 min

Shifting to Risk-Centric Patching: How CISA’s New Mandate Impacts Federal Security

Expanded coverage of CISA’s risk-matrix patching mandate (BOD 26-04), detailing its three-dimensional framework, AI-driven threat context, operational implementation challenges, and strategic implications for federal cyber resilience.

mfa bypass authentication attacksJun 23, 20263 min

Vulnerability in VS Code Web Sandbox Exposes Unscoped GitHub OAuth Tokens via Malicious Webviews

Security researcher Ammar Askar disclosed a zero-day vulnerability in github.dev that allows attackers to exfiltrate unscoped GitHub OAuth tokens using the postMessage keyboard shortcut event bubbling of VS Code webviews.

cybersecurityJun 18, 20263 min

"Sender" Email Spoofing Vulnerability: How Exchange Misconfiguration Enables Active Attacks

Detailed analysis of the Sender email spoofing vulnerability exploiting Exchange Server misconfigurations, including active exploitation evidence and remediation guidance.

cybersecurityJun 18, 20264 min

Check Point links VPN zero-day attacks to Qilin ransomware gang

Israeli cybersecurity company Check Point has released security updates to patch a critical flaw affecting Remote Access VPN and Mobile Access deployments, which was exploited in zero-day attacks linked to the Qilin ransomware gang.

cybersecurityJun 18, 20263 min

Max Severity Ivanti Sentry Vulnerability Now Exploited in Attacks

Attackers are now targeting CVE-2026-10520, a recently patched maximum-severity flaw in Ivanti Sentry that allows remote code execution with root privileges on Internet-exposed secure mobile gateways.

cybersecurityJun 15, 20265 min

Oracle PeopleSoft RCE Vulnerability CVE-2026-35273: Emergency Alert for Zero-Day Exploited by ShinyHunters

Critical unauthenticated remote code execution flaw (CVSS 9.8) in Oracle PeopleSoft PeopleTools actively exploited by ShinyHunters extortion gang targeting 300+ instances across 100+ organizations.

ai agent security safetyJun 14, 20265 min

Langflow Path Traversal Vulnerability CVE-2026-5027 Actively Exploited in Attacks

Attackers are actively exploiting a high-severity path traversal vulnerability in Langflow, the popular AI development platform. The flaw allows unauthenticated attackers to write arbitrary files on exposed servers, potentially leading to remote code execution. This article details the vulnerability, its exploitation timeline, and necessary mitigation steps.