"Bad Epoll" (CVE-2026-46242): Any Local User Can Get Root on Linux 6.4+ Kernels
CVE-2026-46242 ("Bad Epoll") is a use-after-free race in the Linux kernel epoll subsystem that lets any unprivileged local user escalate to root on kernels 6.4…
Security research, penetration testing, CVE analysis, PCI-DSS compliance, and defensive programming techniques for web applications.
69 ARTICLES
CVE-2026-46242 ("Bad Epoll") is a use-after-free race in the Linux kernel epoll subsystem that lets any unprivileged local user escalate to root on kernels 6.4…
CVE-2026-31694 is an out-of-bounds write in the Linux kernel FUSE directory-reading code: a malicious FUSE server sends an oversized dirent that overflows a…
CVE-2026-55791 is a CVSS 10.0 flaw in Craft CMS: the /actions/app/resource-js endpoint trusts the Host / X-Forwarded-Host header (default trustedHosts =>…
CVE-2026-45659 is a deserialization RCE (CVSS 8.8) in on-premises Microsoft SharePoint Server that a low-privileged Site Member can trigger over the network.…
CVE-2026-6070 is an unauthenticated arbitrary file deletion flaw (CVSS 9.1) in the WP-BusinessDirectory plugin (CMSJunkie) for WordPress 4.0.1 and earlier. A…
Synacktiv disclosed an unauthenticated RCE chain in Argo CD's repo-server (no CVE yet): its internal gRPC service has no auth, and a crafted GenerateManifest…
Two critical Cursor IDE flaws (CVE-2026-50548 / CVE-2026-50549, CVSS 9.8), named DuneSlide by Cato AI Labs, let attacker-controlled content escape Cursor's…
CISA confirmed on June 30, 2026 that ransomware gangs are actively exploiting CVE-2026-33825 (BlueHammer), a Microsoft Defender privilege-escalation flaw that…
Oracle E-Business Suite has a CVSS 9.8 unauthenticated takeover flaw in its Payments component (CVE-2026-46817), actively exploited since June 28. ~450…
Adobe Security Bulletin APSB26-68 patches eleven ColdFusion flaws - six at CVSS 10.0, all unauthenticated remote code execution with no user interaction. Adobe…
CVE-2026-55957 lets an attacker authenticate to Tomcat without a password when JNDIRealm uses a GSSAPI bind - a common Kerberos/Active Directory SSO setup. Any…
Citrix bulletin CTX696604 patches six NetScaler ADC and Gateway flaws. The headline bug, CVE-2026-8451 (CVSS v4 8.8), is a pre-auth out-of-bounds memory read…