FALCONINTERNET

Tag

Tagged: CVE

Hosting, infrastructure, development, and SEO — written by the people doing the work.

wp2shell: The WordPress Core RCE Chain Still Active 5 Weeks Later

WordPress

CVE-2026-73570: Zimbra's SNMP Flaw Is Under Active Attack — 270 Servers Compromised and Counting

Security

Citrix NetScaler's Double Trouble: Active RCE Exploitation Meets a Fresh CVSS 9.3 Auth Bypass

Security

CVE-2026-32475: Elementor Pro's File Upload Flaw Hands Attackers Your Server

WordPress

CVE-2026-15748: Forminator's CVSS 9.8 Flaw Puts 600,000 WordPress Sites at Risk

WordPress

VMware vCenter RCE: Five Days from Patch to 361 Compromised Servers

Security

WordPress 7.0.4 Fixes CVE-2026-65640: When an Image Upload Becomes a Shell

WordPress

FBI Joint Advisory: Gunra Ransomware Is Still Getting In Through Fortinet Firewalls Patched 18 Months Ago

Security

KindaRails2Shell: The Image Upload That Hands Attackers Your Server (CVE-2026-66066)

Security

XSS2Shell: WordPress Login Screen XSS Chains to PHP Code Execution

WordPress

CVE-2026-9198: Langflow's CVSS 9.8 RCE Is Already Being Exploited

Security

VMSA-2026-0006: Broadcom Patches CVSS 9.8 vCenter Auth Bypass and RCE

Security

CVE-2026-16232: Admin Access to Your Firewall, No Password Required

Security

CVE-2026-6875: Pre-Auth RCE in ServiceNow AI Platform Now Actively Exploited

Security

CVE-2026-42533: The 15-Year NGINX Flaw That Hands Attackers Your Web Server

Security