The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a critical command injection vulnerability affecting Progress Kemp LoadMaster to its Known…
active exploitationBOD 26-04CISA KEVcommand injection
A critical pre-authentication remote code execution vulnerability in Progress Kemp LoadMaster, tracked as CVE-2026-8037 (CVSS 9.6), is now facing active exploitation attempts.…
active exploitationAPI SecurityCVE-2024-1212CVE-2026-20245
Progress is the company behind Kemp LoadMaster, a load balancing solution. The company is responsible for addressing CVE-2026-8037 and has released patches…
eSentire is a Canadian security vendor that reported active exploitation attempts targeting CVE-2026-8037, providing IP addresses associated with the attacks.
Progress Kemp LoadMaster is a load balancing and application delivery controller product. It is affected by CVE-2026-8037, a critical command injection vulnerability…
A critical vulnerability in Progress Kemp LoadMaster, tracked as CVE-2026-8037 with a CVSS score of 9.8, allows unauthenticated attackers to execute arbitrary…
API SecurityCanadian Centre for Cyber SecurityCl0pcommand injection
watchTowr Labs is a security research firm that analyzed CVE-2026-8037 and identified the root cause in the escape_quotes() function of the LoadMaster…