Recent Advisories

Severity ID Title Vendor Product Date Type
NONE HACKREAD:B57203...

Atomic Arch Campaign Hijacks 20+ Linux AUR Packages to Deliver Malware_HACKREAD:B5720306F380B6EEC3BB344B8B5E795A

Over 20 Linux packages were compromised in the Atomic Arch campaign, which abuses AUR ownership transfers to drop rootkit-like malware.

N/A N/A HACKREAD
NONE THN:96229A308F6...

Over 400 Arch Linux AUR Packages Hijacked to Deploy Infostealer and eBPF Rootkit_THN:96229A308F6E8434EB574698CBB95EB6

![](https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjoaB3XILLCN-oMr8vicgye6mcqKGYsgqgxPAGunmwASyrP3c7XgAxJTV8tsVPuRSmJ8ia7SZdS8hyphenhyp...

N/A N/A THN
CRITICAL 9.8 F0C31C9B-0A65-

Exploit for CVE-2026-20253_F0C31C9B-0A65-5448-9175-384AF0B76ABF

No description provided...

N/A N/A GITHUBEXPLOIT
HIGH 8.6 5581E532-E0A6-

Exploit for CVE-2026-20230_5581E532-E0A6-5210-9EB3-48C5BA4A5411

CVE-2026-20230 Scanner A Python-based scanner and validation tool for identifying potentially vulnerable Cisco Unified Communications Manager Unifi...

N/A N/A GITHUBEXPLOIT
HIGH 7.5 3F8B37D2-6288-

Exploit for Uncontrolled Resource Consumption in Solarwinds Serv-U_3F8B37D2-6288-5724-B73B-D65A8373E501

SolarWinds Serv-U Unauthenticated DoS: Safe Detection Script A safe, non-destructive detector for CVE-2026-28318, an unauthenticated denial-of-serv...

N/A N/A GITHUBEXPLOIT
MEDIUM 5.3 CVE-2026-9641

Crypt::PBKDF2 versions before 0.261630 for Perl have a weak default algorithm and number of iterations_CVE-2026-9641

Crypt::PBKDF2 versions before 0.261630 for Perl have a weak default algorithm and number of iterations. The default algorithm is HMAC-SHA1, which ...

ARODLAND Crypt::PBKDF2 CVE
HIGH 7.5 CVE-2026-9638

Crypt::PBKDF2 versions before 0.261630 for Perl generate insecure random values for salts_CVE-2026-9638

Crypt::PBKDF2 versions before 0.261630 for Perl generate insecure random values for salts. These versions use the built-in rand function, which is...

ARODLAND Crypt::PBKDF2 CVE
HIGH 7.8 CVE-2026-53406

CVE-2026-53406_CVE-2026-53406

Insufficient Verification of Data Authenticity in Remote Control for Zoom Contact Center for Windows before version 7.0.0 may allow an authenticate...

Zoom Communications Remote Control for Zoom Contact Center CVE
CRITICAL 9.5 CVE-2026-48558

SimpleHelp Authentication Bypass via Missing OIDC JWT Signature Verification_CVE-2026-48558

SimpleHelp versions 5.5.15 and prior and 6.0 pre-release versions contain an authentication bypass vulnerability in the OIDC authentication flow. W...

SimpleHelp SimpleHelp 5.5.0 CVE
HIGH 8 CVE-2026-48165

MariaDB: unsafe usage of `wsrep_sst_receive_address` values on the joiner side_CVE-2026-48165

MariaDB server is a community developed fork of MySQL server. From versions 10.6.1 to before 10.6.27, 10.11.1 to before 10.11.18, 11.4.1 to before ...

MariaDB server >= 10.6.1, < 10.6.27 CVE