Monday , September 14 2026

Recent Posts

CVE-2026-20230
Cisco Patches in Unified CM as Exploit Code Goes Public

Unified

Cisco has fixed a flaw in Unified Communications Manager that allows an attacker on the network to write files to the system and then gain full access. It is known as CVE-2026-20230, and proof of concept exploit code is already available. Cisco’s PSIRT says they have not seen anyone use this …

Read More »

1-Click GitHub Token Flaw Allows Attackers Steal Users’ OAuth Tokens

Tokens

A serious security flaw in Visual Studio Code’s webview lets attackers take GitHub OAuth tokens. This includes read/write access to private repositories. They can do this by luring a victim to click a harmful link. The bug was made public on June 2, 2026, by security researcher Ammar Askar. VSCode’s …

Read More »

TP-Link Router Flaw Enables Remote Command Execution Attacks

TP-Link

TP-Link has revealed a serious security problem in its Archer BE450 and Archer BE7200 Wi-Fi routers. This flaw could let an attacker run commands from afar if they get admin access. The flaw, called CVE-2026-5509, has a score of 8.5 (High) in CVSS v4.0, showing how dangerous it is for …

Read More »