AI infrastructure is quickly becoming part of the enterprise attack surface, and CVE-2026-90970 is a good example of why. The vulnerability affects GitLab AI Gateway and carries a CVSS score…
Executive Summary Fortinet has confirmed active exploitation of a critical FortiMail zero-day, CVE-2026-104286. The vulnerability carries a CVSS score of 9.8 and can allow an unauthenticated attacker to write arbitrary…
Executive Summary Cisco Catalyst SD-WAN Manager is dealing with a serious zero-day that is already being exploited in the wild. Tracked as CVE-2026-76504, the flaw allows an unauthenticated attacker to…
The story around the Citrix NetScaler zero-days has become much clearer over the last few days. Initially, we knew that CVE-2026-88771 and CVE-2026-88772 were being exploited in the wild. Now,…
Apple has released security updates to address a newly disclosed CoreGraphics vulnerability, CVE-2026-86950. The vulnerability is an out-of-bounds write that can potentially lead to arbitrary code execution when a maliciously…
CISA has added four vulnerabilities affecting WSO2, Adobe Commerce, Microsoft SharePoint and MikroTik RouterOS to its Known Exploited Vulnerabilities (KEV) Catalog. The common factor is simple: these vulnerabilities are associated…
AI infrastructure is quickly becoming part of the enterprise attack surface, and CVE-2026-90970 is a good example of why. The vulnerability affects GitLab AI Gateway and carries a CVSS score…
Executive Summary Fortinet has confirmed active exploitation of a critical FortiMail zero-day, CVE-2026-104286. The vulnerability carries a CVSS score of 9.8 and can allow an unauthenticated attacker to write arbitrary…
Executive Summary Cisco Catalyst SD-WAN Manager is dealing with a serious zero-day that is already being exploited in the wild. Tracked as CVE-2026-76504, the flaw allows an unauthenticated attacker to…
The story around the Citrix NetScaler zero-days has become much clearer over the last few days. Initially, we knew that CVE-2026-88771 and CVE-2026-88772 were being exploited in the wild. Now,…
Apple has released security updates to address a newly disclosed CoreGraphics vulnerability, CVE-2026-86950. The vulnerability is an out-of-bounds write that can potentially lead to arbitrary code execution when a maliciously…
CISA has added four vulnerabilities affecting WSO2, Adobe Commerce, Microsoft SharePoint and MikroTik RouterOS to its Known Exploited Vulnerabilities (KEV) Catalog. The common factor is simple: these vulnerabilities are associated…
Executive Summary Citrix has confirmed that two NetScaler ADC and NetScaler Gateway zero-day vulnerabilities — CVE-2026-88771 and CVE-2026-88772 — are being exploited in the wild. Both are rated CVSS 9.5,…
Domain Weightage: 17% Flagship Digital Notes | Easy Reference | Natural Human-Language Revision After completing my CISSP, I went back to something very personal to me — my handwritten notes.…