<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>Daily Threat Briefing</title><description>An automated daily threat intelligence briefing for SOC, incident response, and vulnerability management teams.</description><link>https://daily-threat-briefing-blog.pages.dev/</link><item><title>WordPress Core · ServiceNow AI Platform · SailPoint IdentityIQ</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-21/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-21/</guid><description>Active exploitation of the WordPress &quot;wp2shell&quot; RCE chain (CVE-2026-63030 / CVE-2026-60137) is now confirmed with public PoCs circulating — this remains the highest-priority patching action for…</description><pubDate>Tue, 21 Jul 2026 00:00:00 GMT</pubDate></item><item><title>NGINX / NGINX Plus · SonicWall SMA 1000 · WordPress Core</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-20/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-20/</guid><description>The dominant new development today is the confirmed active exploitation of SonicWall SMA 1000 zero-days by threat actor UTA0533, predating public disclosure since June 22. NGINX has patched a…</description><pubDate>Mon, 20 Jul 2026 00:00:00 GMT</pubDate></item><item><title>VMware Avi Load Balancer · WordPress Core · @fastify/http-proxy</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-19/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-19/</guid><description>The most urgent new developments today are a cluster of six VMware Avi Load Balancer vulnerabilities — including unauthenticated authentication bypass (CVSS 9.8, EPSS 0.67) and two RCE flaws (EPSS…</description><pubDate>Sun, 19 Jul 2026 00:00:00 GMT</pubDate></item><item><title>WordPress Core · Windows Local Privilege Escalation Zero-Day · Multiple Critical Vulnerabilities</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-18/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-18/</guid><description>A critical unauthenticated RCE in WordPress Core (CVE-2026-63030, dubbed &quot;wp2shell&quot;) was disclosed yesterday, affecting all 6.9.x and 7.0.x installations; patches are available and forced…</description><pubDate>Sat, 18 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Fortinet FortiSandbox · Microsoft SharePoint · Zoom Workplace for Windows</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-17/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-17/</guid><description>Three new CISA KEV entries demand immediate attention: two unauthenticated OS command injection flaws in Fortinet FortiSandbox (CVE-2026-25089, CVE-2026-39808) and a Microsoft SharePoint…</description><pubDate>Fri, 17 Jul 2026 00:00:00 GMT</pubDate></item><item><title>SonicWall SMA1000 · Mozilla Firefox · Critical Account Takeover Vulnerability</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-16/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-16/</guid><description>Two critical SonicWall SMA1000 zero-days (CVE-2026-15409 / CVE-2026-15410) — already KEV-listed — have been detailed by Rapid7 with full technical analysis, confirmed IOCs, and a published Python PoC…</description><pubDate>Thu, 16 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Microsoft SharePoint Server · Microsoft Active Directory Federation Services · SonicWall SMA1000 Appliances</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-15/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-15/</guid><description>July 2026 Patch Tuesday delivered a record-breaking 622 Microsoft CVEs, including two actively exploited zero-days: CVE-2026-56164 (SharePoint EoP, KEV) and CVE-2026-56155 (AD FS EoP, KEV). A…</description><pubDate>Wed, 15 Jul 2026 00:00:00 GMT</pubDate></item><item><title>SAP NetWeaver Application Server ABAP · ServiceNow AI Platform · SAP Approuter</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-14/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-14/</guid><description>Today&apos;s most significant new developments are a critical memory corruption flaw in SAP NetWeaver AS ABAP (CVE-2026-44747, CVSS 9.9) and an HTTP request smuggling vulnerability in SAP Approuter…</description><pubDate>Tue, 14 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Flowise · Microsoft Edge · Balbooa Forms / iCagenda</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-13/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-13/</guid><description>Today&apos;s most significant new developments are a Metasploit exploit module now available for CVE-2026-41264 (Flowise CSV Agent unauthenticated RCE), materially elevating exploitation risk for that…</description><pubDate>Mon, 13 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Zimbra Collaboration Suite · Microsoft Edge · RSFiles extension for Joomla</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-12/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-12/</guid><description>Today&apos;s most significant new developments are a compromised jscrambler npm package (version 8.14.0) that executes a Rust-based infostealer on install across all platforms, a critical stored XSS in…</description><pubDate>Sun, 12 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Balbooa Forms for Joomla · iCagenda for Joomla · Flowise</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-11/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-11/</guid><description>The most critical new developments today are two actively exploited file upload vulnerabilities in Balbooa Forms and iCagenda (both added to CISA KEV with a 2026-07-13 remediation deadline), a…</description><pubDate>Sat, 11 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Microsoft Defender / Malware Protection Engine · Junos OS on MX Series · Metabase open-source and Enterprise —</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-10/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-10/</guid><description>Today&apos;s most notable new developments are the GigaWiper destructive Windows backdoor (combining disk wiping, fake ransomware, and spyware), the GodDamn ransomware family using a kernel driver to…</description><pubDate>Fri, 10 Jul 2026 00:00:00 GMT</pubDate></item><item><title>CoreWCF · Linux kernel — virtually all mainstream distributions shipping the affected code since 2011 · UniFi Connect</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-09/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-09/</guid><description>Today&apos;s most urgent items are two newly disclosed critical vulnerabilities: CVE-2026-54782 in CoreWCF (CVSS 10.0, SAML token validation bypass enabling authentication bypass) and CVE-2026-43499…</description><pubDate>Thu, 09 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Adobe ColdFusion · JoomShaper SP Page Builder · Langflow</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-08/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-08/</guid><description>Four new CISA KEV entries dominate today&apos;s briefing: Adobe ColdFusion path traversal (CVE-2026-48282), two Joomla-ecosystem file upload flaws enabling unauthenticated RCE, and a Langflow…</description><pubDate>Wed, 08 Jul 2026 00:00:00 GMT</pubDate></item><item><title>ColdFusion · Linux kernel KVM hypervisor · BeyondTrust Remote Support and Privileged Remote Access</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-07/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-07/</guid><description>Active exploitation of Adobe ColdFusion CVE-2026-48316 (CVSS 10.0) has been confirmed, making it the most urgent item today. Three critical pre-authentication vulnerabilities in BeyondTrust Remote…</description><pubDate>Tue, 07 Jul 2026 00:00:00 GMT</pubDate></item><item><title>cve-search · ail-framework v0</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-06/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-06/</guid><description>Intelligence volume is low today. No new CISA KEV entries, BSI advisories, or CERT-EU publications were recorded in the last 24 hours. The most notable new items are a critical unauthenticated input…</description><pubDate>Mon, 06 Jul 2026 00:00:00 GMT</pubDate></item><item><title>picklescan · n8n · Unity Parsec for Windows</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-05/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-05/</guid><description>Today&apos;s intelligence volume is low, with no new CISA KEV additions, no new BSI or CERT-EU advisories, and no new threat campaign reports from major vendors. The most notable new items are a cluster…</description><pubDate>Sun, 05 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Gitea Open Source Git Server · Linux kernel · Microsoft Edge</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-04/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-04/</guid><description>Today&apos;s most significant new developments are a batch of critical Gitea vulnerabilities including an unauthenticated IP spoofing flaw (CVE-2026-20896, CVSS 9.8) and SSRF bypass (CVE-2026-22874, CVSS…</description><pubDate>Sat, 04 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Cisco Unified Communications Manager · Kibana · OPNsense</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-03/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-03/</guid><description>No new CISA KEV additions in the last 24 hours. BSI published a significant batch of new advisories covering Kibana, OPNsense, Ubiquiti UniFi, Coolify, MediaWiki, and IBM DataPower Gateway. Cisco has…</description><pubDate>Fri, 03 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Microsoft SharePoint Server · Google Chrome · SUSE Rancher</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-02/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-02/</guid><description>CISA added CVE-2026-45659 (Microsoft SharePoint Server deserialization RCE) to the KEV catalog with a three-day remediation deadline of 2026-07-04 — immediate patching is required. Google Chrome…</description><pubDate>Thu, 02 Jul 2026 00:00:00 GMT</pubDate></item><item><title>Progress Kemp LoadMaster · IBM Db2 · Adobe ColdFusion 2025</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-01/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-07-01/</guid><description>Active exploitation of CVE-2026-46817 (Oracle E-Business Suite) continues with confirmed breach victims. New today: CVE-2026-48558 (SimpleHelp) CISA KEV deadline falls tomorrow (2026-07-02) — any…</description><pubDate>Wed, 01 Jul 2026 00:00:00 GMT</pubDate></item><item><title>SimpleHelp · libssh2 · Oracle E-Business Suite</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-30/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-30/</guid><description>The most critical new development is active exploitation of CVE-2026-48558, a SimpleHelp authentication bypass now on the CISA KEV catalog, with confirmed deployment of a previously undocumented…</description><pubDate>Tue, 30 Jun 2026 00:00:00 GMT</pubDate></item><item><title>BerriAI LiteLLM Proxy · Dalfox Server</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-29/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-29/</guid><description>Today&apos;s most significant new developments are the addition of new Metasploit exploit modules for CVE-2026-42208 (LiteLLM pre-auth SQL injection, CISA KEV) and CVE-2026-45087 (Dalfox Server…</description><pubDate>Mon, 29 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Invoice Generator plugin for WordPress · libssh2 · Gitea act_runner with Docker backend</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-28/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-28/</guid><description>Today&apos;s most notable new items are two libssh2 memory-safety vulnerabilities (CVE-2026-58050 and CVE-2026-58051) affecting all deployments through version 1.11.1, a critical privilege escalation in…</description><pubDate>Sun, 28 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Linux kernel · Kestra OSS workflow orchestration platform · Budibase low-code platform</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-27/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-27/</guid><description>The most significant new developments today are: a public working exploit for the Linux kernel &quot;pedit COW&quot; privilege escalation (CVE-2026-46331) and a newly detailed DirtyClone variant…</description><pubDate>Sat, 27 Jun 2026 00:00:00 GMT</pubDate></item><item><title>PTC Windchill PLM platform and FlexPLM · All Go applications using golang.org/x/crypto</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-26/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-26/</guid><description>Two new CISA KEV entries demand immediate attention: CVE-2026-12569 (PTC Windchill/FlexPLM, unauthenticated RCE) and CVE-2026-20230 (Cisco Unified CM SSRF, file-write to root) — both with a patch…</description><pubDate>Fri, 26 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Cisco Catalyst SD-WAN Manager · Cacti performance and fault management framework · Gogs self-hosted Git service</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-25/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-25/</guid><description>Mandiant has published technical details on active zero-day exploitation of CVE-2026-20245 in Cisco Catalyst SD-WAN Manager, enabling root-level privilege escalation at a service provider. A…</description><pubDate>Thu, 25 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Cisco Unified Communications Manager · Ubiquiti UniFi OS · Lantronix EDS5000 serial-to-Ethernet device server</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-24/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-24/</guid><description>CISA added four actively exploited vulnerabilities to the KEV catalog on 2026-06-23, including three Ubiquiti UniFi OS flaws and a Lantronix EDS5000 code injection, all with a 2026-06-26 remediation…</description><pubDate>Wed, 24 Jun 2026 00:00:00 GMT</pubDate></item><item><title>IBM Langflow OSS · MISP · Multiple TP-Link models including Archer MR200 v7/v8</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-23/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-23/</guid><description>The most significant new developments today are a large-scale supply chain attack backdooring multiple ShapedPlugin WordPress Pro plugins, a new OXLOADER/CastleStealer malvertising campaign…</description><pubDate>Tue, 23 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Craft CMS · Crawl4AI · libssh2 library</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-22/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-22/</guid><description>Today&apos;s most significant new developments are a critical remote code execution vulnerability in Craft CMS affecting versions 5.5.0 through 5.9.13, multiple critical flaws in the libssh2 library…</description><pubDate>Mon, 22 Jun 2026 00:00:00 GMT</pubDate></item><item><title>SP Page Builder extension for Joomla · SP LMS · iCagenda extension for Joomla</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-21/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-21/</guid><description>Today&apos;s most significant new developments are two critical unauthenticated remote code execution vulnerabilities in widely deployed Joomla extensions (SP Page Builder and SP LMS), a North Korean…</description><pubDate>Sun, 21 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Paperclip AI · Gogs · Windows hosts with low-privilege user sessions</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-20/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-20/</guid><description>Today&apos;s most significant new developments are a Metasploit module for an unauthenticated RCE chain in Paperclip AI (CVE-2026-41679), active exploitation of a Gravity SMTP WordPress plugin information…</description><pubDate>Sat, 20 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Splunk Enterprise · NGINX Open Source and NGINX Plus · pgAdmin 4</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-19/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-19/</guid><description>The most significant new developments today are the CISA KEV addition of CVE-2026-20253 (Splunk Enterprise missing authentication, due 2026-06-21), a CISA alert and UK NCSC advisory on the FortiBleed…</description><pubDate>Fri, 19 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Microsoft Defender · PTC Windchill PDMLink · libssh2</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-18/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-18/</guid><description>Today&apos;s most significant new developments are a Dropping Elephant espionage campaign using a China-themed lure and a heavily reworked memory-resident RAT with full IOCs published, a &quot;FortiBleed&quot;…</description><pubDate>Thu, 18 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Joomla Content Editor · Microsoft Defender · Google Android 17</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-17/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-17/</guid><description>CISA has added CVE-2026-48907, a maximum-severity improper access control flaw in the Joomla Content Editor (JCE) plugin, to the KEV catalog with a remediation deadline of 2026-06-19. A coordinated…</description><pubDate>Wed, 17 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Cisco Catalyst SD-WAN Manager · PAN-OS GlobalProtect portal and gateway components · elixir-grpc grpc</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-16/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-16/</guid><description>Three high-priority items dominate today&apos;s briefing: Cisco Catalyst SD-WAN Manager CVE-2026-20262 has been added to the CISA KEV with a confirmed zero-day exploitation history and a June 29…</description><pubDate>Tue, 16 Jun 2026 00:00:00 GMT</pubDate></item><item><title>LiteSpeed cPanel plugin · GL.iNet GL-MT3000 · Ruijie EG105G-P firmware</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-15/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-15/</guid><description>The Oracle PeopleSoft CVE-2026-35273 CISA KEV remediation deadline expires today; any unfederal agency or organization treating this as a benchmark must patch immediately. New items today include a…</description><pubDate>Mon, 15 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Splunk Enterprise · BUK TS-G Gas Station Automation System · MCP Toolbox for Databases</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-14/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-14/</guid><description>Today&apos;s most significant new item is a critical unauthenticated remote code execution vulnerability in Splunk Enterprise (CVE-2026-20253, CVSS 9.8), which allows arbitrary file operations and code…</description><pubDate>Sun, 14 Jun 2026 00:00:00 GMT</pubDate></item><item><title>vm2 · ChromaDB Python project · Aqara Cloud Production API</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-13/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-13/</guid><description>Today&apos;s most operationally significant new items are: a CVSS 10.0 sandbox escape in vm2 (Node.js) enabling host-process code execution, a critical authentication bypass in SimpleHelp&apos;s OIDC flow…</description><pubDate>Sat, 13 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Oracle PeopleSoft · Ivanti Sentry · 389-ds-base</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-12/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-12/</guid><description>The dominant new development today is the confirmed exploitation of a zero-day in Oracle PeopleSoft (CVE-2026-35273) by the ShinyHunters group (tracked as UNC6240 by Mandiant), with universities and…</description><pubDate>Fri, 12 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Ivanti Sentry · Splunk Enterprise · Langflow</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-11/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-11/</guid><description>The most significant new developments on 2026-06-11 are two critical Ivanti Sentry vulnerabilities enabling unauthenticated remote code execution, confirmed by both CERT-EU and BSI as requiring…</description><pubDate>Thu, 11 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Google Chrome · Veeam Backup and Replication · Adobe Campaign Classic</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-10/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-10/</guid><description>June 10 brings a large-scale Microsoft Patch Tuesday release alongside critical new vulnerabilities in Adobe ColdFusion, Adobe Campaign Classic, and Veeam Backup and Replication. Three new CISA KEV…</description><pubDate>Wed, 10 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Check Point Security Gateway · SAP NetWeaver Application Server ABAP and ABAP Platform · SAP NetWeaver Application Server Java</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-09/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-09/</guid><description>The most critical new developments today are the CISA KEV addition of two actively exploited vulnerabilities: CVE-2026-50751 in Check Point Security Gateway (IKEv1 authentication bypass, CISA…</description><pubDate>Tue, 09 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Comodo Internet Security · WordPress Seotheme · WordPress Background Image Cropper plugin</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-08/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-08/</guid><description>Today&apos;s most significant new development is the public disclosure of CVE-2026-49494, a remotely exploitable kernel-level denial-of-service vulnerability in Comodo Internet Security&apos;s firewall driver,…</description><pubDate>Mon, 08 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Cisco Catalyst SD-WAN Manager · GL.iNet GL-MT3000 router · Booking Package plugin for WordPress</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-07/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-07/</guid><description>The most significant new development in the past 24 hours is the expansion of the Miasma supply chain worm to 73 Microsoft GitHub repositories across four major Microsoft organizations, including…</description><pubDate>Sun, 07 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Mirasvit Full Page Cache Warmer · SolarWinds Serv-U · Everest Forms Pro WordPress plugin</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-06/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-06/</guid><description>The past 72 hours have seen a high volume of critical and actively exploited vulnerabilities across enterprise and web platforms. CISA added two entries to its Known Exploited Vulnerabilities…</description><pubDate>Sat, 06 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Mirasvit Full Page Cache Warmer · Android Framework · Linux Kernel</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-05/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-05/</guid><description>The current threat landscape is dominated by several high-priority items requiring immediate attention. CISA has added three vulnerabilities to its Known Exploited Vulnerabilities catalog within the…</description><pubDate>Fri, 05 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Mirasvit Full Page Cache Warmer · Oracle WebLogic Server · Android Framework</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-04/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-04/</guid><description>The past 72 hours have seen a high volume of actionable threat activity. CISA added four vulnerabilities to its Known Exploited Vulnerabilities catalog, including an actively exploited Android…</description><pubDate>Thu, 04 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Oracle WebLogic Server · Android Framework · Linux Kernel</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-03/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-03/</guid><description>Three actively exploited vulnerabilities dominate today&apos;s briefing: Oracle WebLogic Server (CVE-2024-21182), Android Framework (CVE-2025-48595), and Linux Kernel (CVE-2022-0492) have all been added…</description><pubDate>Wed, 03 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Oracle WebLogic Server · Palo Alto Networks PAN-OS · Apache Solr</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-02/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-02/</guid><description>The past 72 hours have seen a high volume of critical and high-severity vulnerability disclosures alongside several active exploitation events. Key priorities for defenders today include an actively…</description><pubDate>Tue, 02 Jun 2026 00:00:00 GMT</pubDate></item><item><title>Palo Alto Networks PAN-OS · Oracle WebLogic Server · Apache Solr</title><link>https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-01/</link><guid isPermaLink="true">https://daily-threat-briefing-blog.pages.dev/briefings/2026-06-01/</guid><description>Today&apos;s briefing is dominated by several high-priority items requiring immediate attention. The Palo Alto Networks PAN-OS authentication bypass (CVE-2026-0257) is under active exploitation and has a…</description><pubDate>Mon, 01 Jun 2026 00:00:00 GMT</pubDate></item></channel></rss>