Skip to content

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

January 2026

High-Risk ArubaOS Vulnerabilities Enable Command Execution and Network Compromise

  • Vulnerabilities
AegironJanuary 16, 2026January 16, 20269 mins0
High-Severity Command Execution & Memory Corruption Vulnerabilities – 2025 Vendor: Aruba NetworksAffected Platforms: Overall Severity: HighImpact Scope:…
continue reading..

Opening a File Is Enough: High-Risk Adobe Substance 3D Flaws Enable Silent Code Execution

  • Vulnerabilities
AegironJanuary 16, 2026January 16, 20266 mins0
High Severity | Code Execution Risk Vendor: AdobeAffected Product Line: Adobe Substance 3DVulnerability Type: Out-of-Bounds Write →…
continue reading..

CVE-2025-66169: Apache Camel Neo4j Cypher Injection Enables Unauthorized Graph Manipulation

  • Vulnerabilities
AegironJanuary 16, 2026January 16, 20269 mins0
CVE-2025-66169 — Apache Camel (camel-neo4j) — Cypher Injection CVE Identifier: CVE-2025-66169Vulnerability Type: Cypher InjectionSeverity: MediumCVSS Score: Medium…
continue reading..

CVE-2025-33206: High-Risk Command Injection Flaw in NVIDIA Nsight Graphics (Linux)

  • Vulnerabilities
AegironJanuary 16, 2026January 16, 202610 mins0
Executive Summary CVE-2025-33206 is a high-severity command injection vulnerability affecting NVIDIA Nsight Graphics on Linux platforms. The…
continue reading..

CVE-2026-23492: High-Risk Blind SQL Injection in Pimcore Admin Search Allows Database Data Exposure

  • Vulnerabilities
AegironJanuary 16, 2026January 16, 202612 mins0
Quick Facts Overview — What Happened? Pimcore includes an admin search feature that lets authenticated users query…
continue reading..

CVE-2026-23477: OAuth Client Secrets Exposure Allows Unauthorized App Impersonation in Rocket.Chat

  • Vulnerabilities
AegironJanuary 16, 2026January 16, 202612 mins0
CVE ID: CVE-2026-23477Affected Product: Rocket.Chat (prior to version 6.12.0)Severity: HighCVSS v3.1 Score: 7.7 (High)Impact: Disclosure of OAuth…
continue reading..

CVE-2026-0976: Keycloak Proxy Filter Bypass via URL Parsing Mismatch

  • Vulnerabilities
AegironJanuary 16, 2026January 16, 20268 mins0
CVE ID: CVE-2026-0976Product: KeycloakVulnerability Type: Proxy Filter Bypass / URL Parsing MismatchSeverity: High (Context-dependent)CVSS v3.1 Score: 3.7…
continue reading..

CVE-2026-23512: One Click, One Binary — How a Hidden Search Path Flaw in SumatraPDF Can Hand Over Code Execution

  • Vulnerabilities
AegironJanuary 16, 2026January 16, 202612 mins0
CVE ID: CVE-2026-23512Severity: HighCVSS Score: ~8.6Type: Local Remote Code Execution (RCE) via Untrusted Search PathExploitability: Requires local…
continue reading..

CVE-2026-0600 & CVE-2026-0601: Dual High-Risk Flaws in Sonatype Nexus Expose Internal Networks and Admin Sessions

  • Vulnerabilities
AegironJanuary 16, 2026January 16, 202611 mins0
Product overview Product: Sonatype Nexus Repository Manager 3Vendor: SonatypeWhat it does: Nexus Repository is widely used to…
continue reading..

CVE-2026-23550: Critical Modular DS Flaw Allows Unauthenticated Admin Takeover

  • Vulnerabilities
AegironJanuary 16, 2026January 16, 20269 mins0
CVE-2026-23550 — Modular DS CVE ID: CVE-2026-23550Product: Modular DS (also known as Modular Connector for WordPress)Vulnerability Type:…
continue reading..
  • 1
  • …
  • 37
  • 38
  • 39
  • 40
  • 41
  • …
  • 75

Recent Posts

  • Ransomware Group ‘Gentlemen’ Industrializes EDR Evasion with Kernel-Le…
    Jun 22, 2026
  • SmartApeSG Compromises Okendo Reviews Widget, Exposing Thousands of E-…
    Jun 22, 2026
  • Cybercriminals Exploit Fake Microsoft Teams Transcripts to Deploy Pers…
    Jun 22, 2026
  • Thousands Targeted, Hundreds Compromised: Inside the FortiBleed Creden…
    Jun 22, 2026
  • Novel GhoLoader malware campaign detected, using unique ’10 mous…
    Jun 22, 2026
  • INC Ransomware Emerges as a Major Global Cyber Threat, Rapidly Expandi…
    Jun 19, 2026
  • Dropping Elephant Deploys Advanced Fileless Malware, Neutralizing AMSI…
    Jun 19, 2026
  • ShinyHunters Exploits Oracle PeopleSoft Zero-Day, Compromises Universi…
    Jun 19, 2026
  • Cybercriminals Weaponize Wallpaper Engine to Hijack Steam Accounts in …
    Jun 19, 2026
  • AI-Powered ClickFix Campaign Targets Brazilian Banks, Deploys SmartRAT…
    Jun 19, 2026

Popular Posts

No posts found.

Find Me On

©Cyber Security Priority 1(P1) News 2026. All Rights Reserved.
  • Contact
  • Privacy Policy
  • Terms of Service