Category

patch-management

87 articles

CISA KEV Alert: Linux LPE CVE-2026-31431 Now Actively Exploited

Background The threat landscape has shifted from opportunistic scanning to surgical strikes against foundational infrastructure. CISA's recent action—adding CVE-2026-31431 to the Known Exploited Vulnerabilities (KEV) catalog—isn't just administrative housekeeping; it is a signal flare that attackers have moved beyond reconnaissance and are actively weaponizing

Edgerunner Edgerunner 3 min read

CVE-2026-6643: Asustor ADM VPN Buffer Overflow — Patch Now or Get Owned

CVE-2026-6643 exposes Asustor ADM VPN clients to critical stack-based buffer overflow through unbounded sscanf() usage (CVSS 9.9). Security teams must immediately patch perimeter defenses before threat actors exploit this network access gateway vulnerabil

Edgerunner Edgerunner 3 min read