Info  2026-07-02 06:08Z · last 24h · 47 findings · glm-5.2:cloud

Threat Brief — 2026-07-02 — Critical patches, active exploitation, AI attack surface

Attackers are racing to exploit newly disclosed critical infrastructure flaws while vendors rush patches. Adobe dropped fixes for seven CVSS 10.0 vulnerabilities in ColdFusion and Campaign Classic, Progress Kemp LoadMaster is under active exploitation, and an unpatched Argo CD flaw puts Kubernetes clusters at risk. On the threat-actor side, the FortiBleed credential-theft campaign has been definitively linked to INC and Lynx ransomware operations, confirming stolen Fortinet credentials are fuelling follow-on intrusions.

Top items

Themes

Public exploits · latest from the exploit feed

ArcadeDB < 26.7.2 Cross-Database Authorization Bypass (IDOR) 2026-08-02 15:45Z · RSS:cxsecurity-wlb Linux Kernel 7.0-7.0.8 & 7.0-rc-7.0-rc7 - Use After Free Exploit 2026-08-02 15:45Z · RSS:cxsecurity-wlb MODX.3.2.1 TLS cookie without secure flag set - COOKIE PHPSESSID HIJACK 2026-08-02 15:45Z · RSS:cxsecurity-wlb Linux Kernel 7.0 DRM UAF LPE Exploit published for CVE-2026-46215 CVE-2026-46215 2026-07-22 14:05Z · CXSecurity / Exploit-DB (RSS) ZTE ZXHN H188A V6 Authentication Bypass 2026-07-22 13:28Z · RSS:cxsecurity-wlb OpenEMR 7.0.2 Arbitrary File Read 2026-07-22 13:28Z · RSS:cxsecurity-wlb PHP Link Directory (phpLD) 2.1.3 - SQL Injection, IDOR, CSRF 2026-07-22 13:28Z · RSS:cxsecurity-wlb KNX visualisering - Broken Access Control 2026-07-22 13:28Z · RSS:cxsecurity-wlb D-Link DSL2600U rom-0 Admin Password Disclosure 2026-07-22 13:28Z · RSS:cxsecurity-wlb Windows Defender (MsMpEng.exe) Race Condition -> LPE / SYSTEM / Use-After-Free -> Crash 2026-07-22 13:28Z · RSS:cxsecurity-wlb