CVE Alerts

CVE-2026-41940 cPanel WHM Zero-Day Auth Bypass Puts 70M Domains at Risk

By xploitzone
April 30, 2026

CVE-2026-41940 A CVSS 9.8 zero day authentication bypass flaw in cPanel and....

cPanel WHM Critical Auth Flaw Patch Now or Risk Server Compromise

By xploitzone
April 29, 2026

cPanel disclosed a critical authentication vulnerability on April 28, 2026, affecting all....

CVE-2026-3854 Git Push Flaw Could Expose Millions of Private GitHub Repositories

By xploitzone
April 29, 2026

Wiz Research discovered CVE-2026-3854 a critical RCE vulnerability in GitHub internal Git....

CVE-2026-32202 APT28 Windows Patch Flaw Enables Zero-Click NTLM Theft

By xploitzone
April 28, 2026

Microsoft fixed CVE-2026-32202 in April 2026 Patch Tuesday this is a zero-click....

CVE-2026-3008: Notepad++ Format String Flaw Causes Memory Leak and Crash Risk

By xploitzone
April 28, 2026

Two dangerous vulnerabilities CVE-2026-3008 and CVE-2026-6539 have been discovered in Notepad++ version....

Nessus Agent Flaw SYSTEM Privilege Code Execution on Windows

By xploitzone
April 27, 2026

Tenable’s Nessus Agent on Windows is suffering from a serious vulnerability that....

PhantomRPC Vulnerability Unpatched Windows Bug Grants SYSTEM Access

By xploitzone
April 26, 2026

Kaspersky exposed a dangerous Windows vulnerability named PhantomRPC at Black Hat Asia....

Bissa Scanner Steals Data from 900 Companies via React2Shell (CVE-2025-55182)

By xploitzone
April 24, 2026

A single operator used Bissa Scanner, AI tools and a Telegram bot....

1,370+ Microsoft SharePoint Servers Exposed Online, Massive Spoofing Attack Alert

By xploitzone
April 22, 2026

The Shadowserver Foundation reported on April 22, 2026 that more than 1,370....

FortiSandbox Flaw Enables Command Execution as PoC Exploit Becomes Public

By xploitzone
April 18, 2026

Fortinets FortiSandbox the advanced threat protection system that detects malware in enterprise....