Progress Software warned customers to patch a critical authentication bypass vulnerability in its MOVEit Automation enterprise-grade managed file transfer (MFT) application. [...]
Security breaches don't just test your defenses—they test your recovery. Join Kaseya in our upcoming webinar to learn how MSPs strengthen resilience with SaaS backups and BCDR to stay operational after attacks. [...]
A vulnerability described as critical has been identified in Linux Kernel up to 6.6.135/6.12.83/6.18.24/7.0.1. Impacted is the function check_add_overflow of the file smbacl.c of the component ksmbd. Such manipulation leads to buffer overflow.
This vulnerability is documented as CVE-2026-31704. The attack requires being on the local network. There is not any exploit available.
Upgrading the affected component is recommended.
A vulnerability was found in Linux Kernel up to 6.6.135/6.12.83/6.18.24/7.0.1. It has been declared as critical. This affects the function smb2_get_ea of the component ksmbd. Executing a manipulation can lead to out-of-bounds write.
The identification of this vulnerability is CVE-2026-31705. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical has been found in Linux Kernel up to 6.6.135/6.12.83/6.18.24/7.0.1. This vulnerability affects the function f2fs_compress_write_end_io of the file data.c. This manipulation causes use after free.
This vulnerability appears as CVE-2026-31702. The attacker needs to be present on the local network. There is no available exploit.
It is recommended to upgrade the affected component.
A vulnerability described as critical has been identified in Linux Kernel up to 6.6.135/6.12.83/6.18.24/7.0.1. This affects the function create_card of the component Caiaq Driver. The manipulation results in null pointer dereference.
This vulnerability is reported as CVE-2026-31701. The attacker must have access to the local network to execute the attack. No exploit exists.
Upgrading the affected component is recommended.
A vulnerability marked as critical has been reported in Linux Kernel up to 6.6.135/6.12.83/6.18.24/7.0.1. Affected by this issue is the function __sev_do_cmd_locked of the component crypto. The manipulation leads to memory corruption.
This vulnerability is documented as CVE-2026-31699. The attack requires being on the local network. There is not any exploit available.
It is suggested to upgrade the affected component.
A vulnerability identified as critical has been detected in Linux Kernel up to 6.6.135/6.12.83/6.18.24/7.0.1. Affected is the function __sev_do_cmd_locked of the component crypto. Performing a manipulation results in memory corruption.
This vulnerability is cataloged as CVE-2026-31697. The attack must originate from the local network. There is no exploit available.
You should upgrade the affected component.
A vulnerability labeled as critical has been found in Linux Kernel up to 6.6.135/6.12.83/6.18.24/7.0.1. Affected by this vulnerability is the function __sev_do_cmd_locked of the component crypto. Executing a manipulation can lead to memory corruption.
This vulnerability is registered as CVE-2026-31698. The attack requires access to the local network. No exploit is available.
The affected component should be upgraded.
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.6.135/6.12.83/6.18.24/7.0.1. Impacted is the function rxrpc_preparse of the file net/rxrpc/key.c of the component XDR Parser. Performing a manipulation results in memory corruption.
This vulnerability is known as CVE-2026-31696. Access to the local network is required for this attack. No exploit is available.
It is advisable to upgrade the affected component.
A vulnerability classified as critical was found in Linux Kernel up to 6.6.135/6.12.83/6.18.24/7.0.1. This issue affects the function fuse_add_dirent_to_cache. Such manipulation of the argument namelen leads to deserialization.
This vulnerability is traded as CVE-2026-31694. Access to the local network is required for this attack to succeed. There is no exploit available.
Upgrading the affected component is advised.
A vulnerability, which was classified as critical, has been found in Bitwarden CLI 2026.4.0. This affects an unknown part. Performing a manipulation results in os command injection.
This vulnerability is reported as CVE-2026-42994. The attack is possible to be carried out remotely. No exploit exists.