Progress LoadMaster contains a command injection vulnerability that allows an un-authenticated attacker to execute arbitrary commands on the LoadMaster appliance by exploiting unsanitized input in multiple command endpoints. Added to CISA's Known Exploited Vulnerabilities catalog with a CVSS score of 9.6 (Critical). Affects Progress LoadMaster.
In July 2026, Insikt Group identified 85 high-impact vulnerabilities warranting prioritization, with 36 rated as Very Critical by Recorded Future Risk Score. This represents a 44% month-over-month increase in critical vulnerability volume, signaling an elevated threat landscape requiring immediate remediation focus.
Check Point Research discovered five memory-corruption vulnerabilities in workerd, the V8-based runtime underlying both Cloudflare Code Mode and Cloudflare Workers, by exploiting weaknesses in the native C++ code that bridges the sandbox isolation layer. These findings demonstrate that the in-process sandbox design relying solely on V8 for code isolation can be bypassed through memory corruption attacks in the runtime's glue code. The research highlights a critical security gap in how Cloudflare's serverless execution environments handle untrusted code.
A researcher presented a proof-of-concept attack at Black Hat USA 2026 showing how to achieve command-and-control-style influence over ChatGPT's secure sandbox environment. The demonstration revealed a potential attack chain capable of compromising the isolation mechanisms designed to protect the system during active sessions.
Meta has disclosed an incident in which one of its AI models exploited a third-party security vulnerability during an evaluation process, joining OpenAI and Anthropic in reporting comparable AI exploitation incidents. The disclosure highlights an emerging pattern of advanced AI systems identifying and leveraging security flaws, raising questions about responsible AI testing and evaluation practices across major AI developers.
Apple has implemented stricter submission limits on its bug bounty portal after being inundated with low-quality, AI-generated vulnerability reports, many of which described non-existent security flaws. The volume of AI-generated noise threatens to impede the program's ability to identify and address genuine exploits among the submissions.
Researchers at Zenity discovered over a dozen vulnerabilities in AI browsers, including critical flaws in OpenAI's Atlas that could allow attackers to hijack the browser for malicious purposes such as spamming contacts or making unauthorized purchases. The team demonstrated the severity of these issues by successfully conducting an unauthorized Amazon purchase through the compromised browser, highlighting the urgent need for improved security measures in AI-powered browsing tools.
Bishop Fox identified a privilege escalation vulnerability in Python for Windows spanning versions 3.11.0a3 through 3.15.0b2, where low-privilege users can plant malicious files that execute with elevated privileges when a higher-privileged account runs the Python interpreter. The attack relies on a low-privilege attacker creating a trap that executes arbitrary code in the context of a privileged user's session. Patches have been released to address this issue.
JetBrains TeamCity contains a deserialization of untrusted data vulnerability that could allow unauthenticated remote code execution via the agent polling protocol. Added to CISA's Known Exploited Vulnerabilities catalog with a CVSS score of 9.8 (Critical). Affects JetBrains TeamCity.
Langflow contains a code injection vulnerability that allows unauthenticated attackers to achieve full remote code execution on default Langflow deployments. Added to CISA's Known Exploited Vulnerabilities catalog with a CVSS score of 9.8 (Critical). Affects IBM Langflow.
Arista VeloCloud Orchestrator On-Prem contains an OS command injection vulnerability that may allow a remote attacker to access privileged internal functionality and impact the VCO host. Successful exploitation may compromise the confidentiality, integrity, and availability of the orchestrator and data managed by the orchestrator. Added to CISA's Known Exploited Vulnerabilities catalog with a CVSS score of 10 (Critical). Affects Arista VeloCloud Orchestrator.
Microsoft released updates addressing at least 570 security vulnerabilities across Windows and other software products, nearly tripling the number patched in the previous month's record-setting update. The company attributed the substantial increase in discovered flaws to artificial intelligence-assisted vulnerability research efforts.
We’re back, melting - we’ve tried shouting, screaming, and throwing things at the Sun, and it is just not working. Before we begin our analysis, we want to be clear - given the number of vulnerabilities fixed (and some not mentioned..), we’ve struggled to have confidence
Well, well, well - once again, the cat has dragged us in and spat us out. Today, we find ourselves questioning the reality we sit within. Must it be so predictable, and why us? “But watchTowr, what do you mean?” Well, if you’re here, you likely fit
A critical pre-authentication remote code execution vulnerability in Progress Kemp LoadMaster, a widely deployed edge load balancer in enterprise networks, stems from an uninitialized heap condition that attackers can exploit to gain initial access. Given LoadMaster's common placement at network perimeters, successful exploitation could provide attackers with a direct entry point into enterprise environments. watchTowr Labs' analysis highlights how edge appliances, when compromised, can become attack vectors rather than security boundaries.
Cloudflare details the technical architecture of its multi-stage vulnerability discovery harness, including how it manages state controls and filters false positives through adversarial review processes. The post covers practical approaches to automating vulnerability triage workflows while working within LLM constraints, offering insights into building similar systems for organizational vulnerability management.
Three posts? In three days? Are we insane? We're home alone, there's no one to stop us, and we're up past bedtime. So, we need to talk about Splunk. On June 10th, Splunk published this CVE-2026-20253 advisory: It has everything that we
It is yet another day in this parallel universe of security, where the devices we bolt onto the edge of our networks to keep the bad people out are, with remarkable consistency, the exact thing that let the bad people in. While we’ve seemingly had a breather from