LiteLLM CVE-2026-42271: CISA KEV Alert for Active Command Injection Exploit
June 9, 2026 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added a high-severity command injection flaw in BerriAI LiteLLM to its Known Exploited Vulnerabilities (KEV) catalog on Monday. The vulnerability, tracked as CVE-2026-42271,…
Google Chrome Zero-Day CVE-2026-11645: Fifth 2026 Exploit
June 9, 2026 Google has released an emergency security update for Chrome to fix CVE-2026-11645, a high-severity zero-day vulnerability in the V8 JavaScript engine that is already being exploited in the wild. Consequently, this marks the fifth actively…
Check Point VPN Zero-Day CVE-2026-50751: Qilin Ransomware Exploit
June 8, 2026 Check Point has disclosed a critical zero-day vulnerability in its Remote Access VPN and Mobile Access deployments that allows unauthenticated attackers to bypass authentication and establish VPN connections. The flaw, tracked as…
Meta AI Support Breach Hijacks 20,000 Instagram Accounts
June 8, 2026 Meta has disclosed that attackers exploited a vulnerability in its AI-powered Instagram account recovery system to hijack more than 20,000 user accounts. Consequently, the breach raises serious questions about how AI-assisted support tools…
AI Agent Discovers 21 FFmpeg Zero-Days: CVE-2026-39210-39218
June 6, 2026 An autonomous AI security agent has uncovered 21 zero-day vulnerabilities in FFmpeg, the ubiquitous media processing library that powers browsers, streaming platforms, and countless applications worldwide. The findings mark a significant…
DentaQuest Data Breach Exposes 2.6M Accounts: ShinyHunters Leak
June 7, 2026 DentaQuest, one of the largest dental benefits administrators in the United States, confirmed a major data breach that exposed the personal and health information of approximately 2.6 million accounts. The incident was carried out by the…
Cisco Unified CM CVE-2026-20230: Critical SSRF Flaw With Public PoC
June 04, 2026 Cisco has disclosed a critical server-side request forgery (SSRF) vulnerability in its Unified Communications Manager platform. The flaw, tracked as CVE-2026-20230, could allow unauthenticated remote attackers to gain root privileges on…
CVE-2026-23479: AI Discovers 2-Year-Old Redis RCE Vulnerability
June 3, 2026 Redis has patched a critical use-after-free vulnerability that allows authenticated attackers to execute arbitrary operating system commands on the database server. The flaw, tracked as CVE-2026-23479, was discovered by an autonomous AI…
CVE-2025-48595 Android Zero-Day Under Active Exploit
June 02, 2026 Google has released the June 2026 Android security update, patching 124 vulnerabilities across the mobile operating system. One high-severity flaw in the Android Framework component, tracked as CVE-2025-48595, is already under active…
Iranian State-Sponsored Hacking Group Handala Breaches Holocaust Victim Support Centre: 2M Documents Leaked
June 2, 2026 Iranian state-sponsored hacking group Handala breached the Holocaust Victim Support Centre in Israel on May 31, 2026. The group claimed responsibility for the attack and leaked over two million documents totaling more than one terabyte of…