ProBackend
Vulnerabilities & Exploits

Vulnerabilities & Exploits

CVEs, zero-days, patching and exploited weaknesses.

active vulnerability exploitationJul 25, 20263 min

Unmasking the wp2shell Chain: Critical RCE Risks in Modern WordPress Deployments

Research notes and outline detailing the critical wp2shell exploit chain (CVE-2026-63030 and CVE-2026-60137) impacting WordPress Core.

ai brain injury researchJul 25, 20267 min

Decoding the Anatomy of Vulnerability: How Protein Isoforms Dictate Tissue-Specific Brain Pathology

This article explores the biological mechanisms behind selective tissue vulnerability in neurodegenerative diseases, using Spinocerebellar Ataxia Type 1 (SCA1) as a model case. The research explains why a harmful protein (mutant ATXN1) that is expressed throughout the body causes highly localized damage. It highlights that the regional abundance and binding preferences of Capicua (CIC) isoforms—specifically CIC-Long (CIC-L) and CIC-Short (CIC-S)—dictate where and how toxicity occurs, offering a

active vulnerability exploitationJul 25, 20265 min

Progress Forces Emergency ShareFile Shutdown Over Unpatched Zero-Day Flaw

Progress confirmed a critical zero-day vulnerability affecting all 5.x and 6.x versions of ShareFile Storage Zone Controller, leading to emergency shutdowns. The flaw allows authenticated admins to read arbitrary files, write malicious content, or enumerate the server filesystem.

active vulnerability exploitationJul 24, 20263 min

Actively Exploited Langflow RCE Flaw Forces CISA's Emergency Federal Patch Directive

CISA ordered U.S. federal agencies to patch CVE-2026-0770, an actively exploited remote code execution flaw in the Langflow AI agent framework that lets attackers gain root access without authentication.

active vulnerability exploitationJul 24, 20266 min

ServiceNow's AI Platform Under Fire: How CVE-2026-6875 Became an Active Exploitation Target

Threat intelligence firm Defused has confirmed in-the-wild exploitation of CVE-2026-6875, a critical unauthenticated remote code execution flaw in ServiceNow's AI Platform. Attackers are using a sandbox-escape gadget that reaches code-execution via a different route than the published proof-of-concept, raising urgent patching pressure on the 85% of Fortune 500 companies that run the platform.

active vulnerability exploitationJul 24, 20264 min

InfraTrust: Why Infrastructure Vulnerabilities Deserve a Different Patching Priority

Eclypsium has launched InfraTrust, a new infrastructure cybersecurity knowledge base and monthly InfraTrust Pulse report designed to help organizations prioritize vulnerabilities affecting infrastructure, firmware, networking, and edge devices based on exploitability, exposure, and real-world risk rather than CVSS scores alone.

active vulnerability exploitationJul 24, 20264 min

Attackers Exploit Claude AI's Legitimate Domain to Host Malicious Installer in Bing Malvertising Campaign

A malvertising campaign on Bing uses a fake Claude desktop app installer hosted on the legitimate Claude.ai domain to deliver SectopRAT malware, compromising at least 29 organizations.

patch management vulnerability remediationJul 24, 20263 min

Free Unofficial Patches for Windows LegacyHive Zero-Day Let Non-Admins Take Over Systems

ACROS Security’s micropatches block LegacyHive, a Windows User Profile Service flaw letting non-admins hijack registry hives and escalate privileges on up-to-date systems — without waiting for Microsoft.

active vulnerability exploitationJul 24, 20263 min

CVE-2026-50522: How SharePoint's Deserialization Flaw Lets Attackers Steal Machine Keys and Stay Forever

Hackers are actively exploiting CVE-2026-50522, a deserialization flaw in Microsoft SharePoint, to steal machine keys and maintain long-term access to compromised systems.

active vulnerability exploitationJul 24, 20265 min

Check Point Patches SmartConsole Zero-Day as Artificial Intelligence Cybersecurity Threats Escalate

Israeli cybersecurity firm Check Point Software addressed CVE-2026-16232, an authentication bypass vulnerability in the SmartConsole GUI admin panel that allows unauthenticated attackers to obtain administrator credentials, prompting CISA's BOD 26-04 mandate for federal agencies.

active vulnerability exploitationJul 24, 20265 min

Critical U-Boot Flaws Open Door for Stealthy Firmware Attacks Before OS Boot

Six vulnerabilities in the widely used U-Boot bootloader discovered by Binarly could allow attackers to execute malicious code during device boot before the operating system starts, potentially enabling stealthy firmware attacks that compromise security protections and install persistent malware.

active vulnerability exploitationJul 24, 20263 min

CISA Mandates Immediate Remediation of Actively Exploited Langflow RCE Flaw

CISA has issued an emergency directive to U.S. federal agencies requiring the patching of a critical RCE vulnerability, CVE-2026-0770, in the Langflow framework, which is currently being exploited in the wild.