Intelligence · Updated daily

Security Intelligence

AI-analysed threats, vulnerabilities and campaigns. Not just what happened — what it means, who's affected, and what to do about it.

Page 15 of 26

351–375 of 632
criticalVulnerabilityActive

OpenTelemetry RMI Deserialization RCE - Unsafe Gadget Chain Exploitation Vector

OpenTelemetry Java instrumentation versions <2.26.1 fail to apply serialization filters on RMI deserialization, allowing unauthenticated remote code execution when RMI endpoints are network-accessible and gadget chains are present. This affects production observability infrastructure with potential for supply-chain compromise.

CVE-2026-33701
OpenTelemetry/opentelemetry-java-instrumentation (<2.26.1)
criticalVulnerabilityEmerging

Deserialization RCE in Schneider Electric Foxboro DCS Workstations: Critical ICS Risk in Distributed Control Systems

Schneider Electric patched a critical untrusted deserialization vulnerability in EcoStruxure Foxboro DCS workstations and servers that enables remote code execution. The vulnerability affects control software on engineering stations but spares runtime components, yet poses significant risk to DCS environments managing critical infrastructure.

Schneider Electric EcoStruxure Foxboro DCS (workstations and servers)
criticalVulnerabilityActive

Critical Privilege Escalation in Schneider Electric Plant iT/Brewmaxx Enables RCE Across Industrial Operations

Schneider Electric Plant iT/Brewmaxx versions 9.60 and above contain four critical vulnerabilities (CVSS 9.9) enabling privilege escalation to remote code execution. Organizations using this brewing and plant management software face immediate risk of full system compromise.

CVE-2025-49844CVE-2025-46817CVE-2025-46818CVE-2025-46819
Schneider Electric Plant iT/Brewmaxx 9.60 and later
criticalVulnerabilityActive

Maximum-Severity Quest KACE SMA Exploitation Campaign Signals Internet-Exposed Admin Tools as Prime Targets

Threat actors are actively exploiting CVE-2025-32975, a critical remote code execution flaw in Quest KACE Systems Management Appliance (SMA), against unpatched internet-exposed instances since March 2026. SMA is enterprise-grade IT infrastructure management software, making compromises particularly damaging.

CVE-2025-32975
Quest KACE Systems Management Appliance (SMA)