Dell patched critical Dell Networking OS10 vulnerabilities, including CVE-2026-63695. Update your Dell SmartFabric OS10 switches to prevent session theft.
Security researchers disclosed on August 24–25, 2026, that two Microsoft SharePoint Server vulnerabilities—CVE-2026-55040 and CVE-2026-63520—can be chained to bypass authentication and achieve remote code execution without a password. Both flaws are listed in CISA's Known Exploited Vulnerabilities catalog with public exploits available.
Between July 27-29, 2026, security exploits were publicly disclosed for five software products: nginx 1.30.3 (heap buffer overflow/RCE), GitLab Community Edition 18.11.3 (notebook diff RCE), MouseHero 1.2.0+1 (remote power control), OpenWrt odhcpd (RCE), and vBulletin 6.2.1 (pre-auth RCE). All were listed on Packet Storm with exploit code available.
Microsoft Windows Admin Center Remote Code Execution https:// packetstorm.news/files/228942 # exploit
Payara 7.2026.1.RC1 Remote Code Execution https:// packetstorm.news/files/230558 # exploit
Posts from 20–21 August 2026 linking to newly released or updated security tools (ldis Lua disassembler, angr, Wapiti scanner, Docker exploits, Flowise RCE, Nimux). No single story; technical release announcements only.
Ivanti Sentry Authentication Bypass / Remote Code Execution https:// packetstorm.news/files/229348 # exploit
Next.js Windows Remote Code Execution https:// packetstorm.news/files/229661 # exploit
SpeechBrain 1.1.0 CKPT.yaml Arbitrary Code Execution https:// packetstorm.news/files/229907 # exploit
JFrog Artifactory Authentication Bypass https:// packetstorm.news/files/230418 # exploit
XenForo 2.3.12 Windows Style Archive Path Traversal https:// packetstorm.news/files/230941 # exploit
Zimbra Collaboration Suite 10.1.19 Remote Code Execution https:// packetstorm.news/files/231303 # exploit
Between 2026-09-21 and 2026-09-23, security advisories disclosed remote code execution vulnerabilities in OpenAM 16.0.5, MetaServer, Penpot 2.17.2, Microsoft Teams, GitLab, and other enterprise software. All require urgent patching to prevent active exploitation.
Balbooa Forms 2.4.3.1 Remote Code Execution / Payment Tampering https:// packetstorm.news/files/230063 # exploit
Orkes Conductor 3.21.21 / 3.30.1 Remote Code Execution https:// packetstorm.news/files/230633 # exploit
enclave-vm 2.6.0 Sandbox Escape / Remote Code Execution https:// packetstorm.news/files/231530 # exploit
SAP NetWeaver Extended Passport Remote Code Execution https:// packetstorm.news/files/232401 # exploit
Infosec Mastodon instance accounts posted links to software security vulnerabilities and exploits between 23–24 July 2026, including remote code execution flaws in Feast, AdRem NetCrunch, Brekeke SIP Server, BentoML, and kernel driver issues. No coherent story; a feed of unrelated vulnerability announcements.