● On the wire
CRLF-Powered Desync Attacks: Beheading HTTP Streams//Debian libde265 Major Exec Threat Memory Exhaustion DoS Notice DSA-6413-1//Cisco IOS XE Software SNMP Denial of Service Vulnerability//Cisco Integrated Management Controller Cross-Site Scripting Vulnerability//Cisco Catalyst SD-WAN Software Security Hardening Release: August 2026//Cisco Terminal Services Agent Firewall Rules Bypass Vulnerability//Cisco IOS XE Software Blocks Extensible Exchange Protocol Denial of Service Vulnerability//Cisco IOS XE Software Web-Based Management Interface Denial of Service Vulnerability//When Agentic Glue Melts: Exploiting Cloudflare Code Mode and Workers//ClamAV Vulnerabilities Affecting Cisco Products: August 2026//Debian Kitty Serious Code Execution Vulnerability DSA-6423-1 Update//Debian Linux 6.12.101-1 Advisory DSA-6415-1 CVEs 2025-40098 to 2026-64584//Debian Thunderbird Significant Code Execution Vulnerabilities DSA-6418-1//CSS:the bomb inside your inbox//Debian DSA-6421-1 pdns-recursor Denial of Service CVE-2026-52682//CRLF-Powered Desync Attacks: Beheading HTTP Streams//Debian libde265 Major Exec Threat Memory Exhaustion DoS Notice DSA-6413-1//Cisco IOS XE Software SNMP Denial of Service Vulnerability//Cisco Integrated Management Controller Cross-Site Scripting Vulnerability//Cisco Catalyst SD-WAN Software Security Hardening Release: August 2026//Cisco Terminal Services Agent Firewall Rules Bypass Vulnerability//Cisco IOS XE Software Blocks Extensible Exchange Protocol Denial of Service Vulnerability//Cisco IOS XE Software Web-Based Management Interface Denial of Service Vulnerability//When Agentic Glue Melts: Exploiting Cloudflare Code Mode and Workers//ClamAV Vulnerabilities Affecting Cisco Products: August 2026//Debian Kitty Serious Code Execution Vulnerability DSA-6423-1 Update//Debian Linux 6.12.101-1 Advisory DSA-6415-1 CVEs 2025-40098 to 2026-64584//Debian Thunderbird Significant Code Execution Vulnerabilities DSA-6418-1//CSS:the bomb inside your inbox//Debian DSA-6421-1 pdns-recursor Denial of Service CVE-2026-52682//
Check Point SmartConsole: bypass di autenticazione attivamente sfruttato
Top story — News

Check Point SmartConsole: authentication bypass actively exploited

Check Point has fixed a critical vulnerability in the SmartConsole login process, tracked as CVE-2026-16232, which allows an unauthenticated attacker to obtain an application token and gain access with full administrative privileges. Reports indicate that the bug is already being exploited in the wild, although the direct impact currently concerns only a limited number of customers. The flaw affects Security…

Read the article →
From the newsroom
Spotlight
More news