VMware vCenter's Syslog Server Had a Path Traversal Bug CISA Ties to Ransomware
CVE-2026-59310, a directory traversal vulnerability in vCenter's Syslog server leading to code execution, carries CISA's confirmed ransomware campaign flag.
Deep dives, practical guides, and incident analyses from engineers who build Safeguard. No fluff, no vendor FUD — just what you need to ship secure software.
CVE-2026-59310, a directory traversal vulnerability in vCenter's Syslog server leading to code execution, carries CISA's confirmed ransomware campaign flag.
A Microsoft SQL Server RCE from 2019 and an ownCloud authentication bypass from 2023 both entered CISA's KEV catalogue in the same week of August 2026 — years after their original disclosure.
CVE-2026-21962, an access control failure in the Oracle HTTP Server / WebLogic Server Proxy Plug-in, went from January disclosure to August KEV confirmation — seven months later.
CVE-2026-75650, a server-side template injection in Adobe Commerce and Magento, was confirmed exploited within 24 hours of its NVD publication.
CVE-2026-20079, a CVSS 10.0 authentication bypass in Cisco Secure Firewall Management Center, was confirmed exploited six months after its original disclosure.
Fortinet FortiSandbox, built to detonate suspicious files safely, had two command injection vulnerabilities confirmed exploited on the same day in July 2026.
Four Joomla extensions from unrelated developers had unauthenticated file upload vulnerabilities confirmed exploited within a three-day window in July 2026, every one scoring CVSS 9.8.
MikroTik RouterOS had two vulnerabilities confirmed exploited on the same day in September 2026, both cases of the router extending trust before verification actually completed.
PaperCut MF/NG, previously exploited at scale by ransomware affiliates in 2023, had two more vulnerabilities confirmed exploited on the same day in 2026 — an access control failure and unsafe class loading.
Weekly insights on software supply chain security, delivered to your inbox.
Your first fix PR is minutes away.
No sales call required, even your agent can complete the purchase over MCP.