Zimbra SNMP Flaw CVE-2026-73570 Actively Exploited for Unauthenticated RCE
A now-patched command injection vulnerability in Zimbra Collaboration (ZCS), tracked as CVE-2026-73570 (CVSS 8.9), is under active exploitation in the wild, according…
A now-patched command injection vulnerability in Zimbra Collaboration (ZCS), tracked as CVE-2026-73570 (CVSS 8.9), is under active exploitation in the wild, according…
CVE-2024-39943 is an operating-system command-injection flaw in Rejetto HFS. It was associated with the recovered tooling in the Operation CameraSwarm campaign but…
Cybersecurity researchers at Wiz have disclosed a GitHub Actions workflow injection vulnerability in Snowflake's public snowflakedb/snowflake-connector-net repository. The flaw, present in the…
CVE-2025-6514 is a vulnerability in mcp-remote, an OAuth proxy for MCP servers, that allows a malicious MCP server to trigger OS command…
A command injection vulnerability in D-Link DIR-823X, exploited by Evooo1Bot.
A command injection vulnerability in D-Link DIR-868L B1 router, used by Evooo1Bot.
A command injection vulnerability in Zyxel firewalls, targeted by Evooo1Bot.
A command injection vulnerability in TP-Link Archer AX21, exploited by Evooo1Bot.
A command injection vulnerability in D-Link NAS devices, included in Evooo1Bot's exploit module.
A command injection vulnerability in Tenda AC7, AC9, and AC10 routers, exploited by Evooo1Bot.