PULSE
LIVE0signals / 24h
FEED
vulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-85880 — Microsoft / WindowsvulnKEV agrega CVE-2026-85046 — Google / Chromium V8vulnKEV agrega CVE-2026-59822 — BerriAI / LiteLLMvulnKEV agrega CVE-2026-48710 — Kludex / StarlettevulnKEV agrega CVE-2026-49869 — Kestra / Kestra OSSvulnKEV agrega CVE-2026-82329 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-9586 — Sangoma / SwitchvoxvulnKEV agrega CVE-2026-19490 — Citrix / NetScalervulnKEV agrega CVE-2025-25249 — Fortinet / Multiple ProductsvulnKEV agrega CVE-2026-87491 — Google / Chromium V8vulnKEV agrega CVE-2026-20079 — Cisco / Secure Firewall Management Center (FMC) and Security Cloud Control (SCC) Firewall ManagementvulnKEV agrega CVE-2026-75650 — Adobe / Commerce and MagentovulnKEV agrega CVE-2026-81963 — Microsoft / WindowsvulnKEV agrega CVE-2026-86218 — N-able / N-centralvulnKEV agrega CVE-2026-85880 — Microsoft / WindowsvulnKEV agrega CVE-2026-85046 — Google / Chromium V8vulnKEV agrega CVE-2026-59822 — BerriAI / LiteLLMvulnKEV agrega CVE-2026-48710 — Kludex / StarlettevulnKEV agrega CVE-2026-49869 — Kestra / Kestra OSSvulnKEV agrega CVE-2026-82329 — JFrog / ArtifactoryvulnKEV agrega CVE-2026-9586 — Sangoma / Switchvox
Kalir Brief · Item10 September 2026 · 15:12 UTC
BRIEFOtherhighP60

Zero-day RCE exploit for Apache OFBiz for sale

Apache OFBiz users

Detected10 September 2026 · 15:12 UTC
Why it matters

A zero-day remote code execution exploit targeting Apache OFBiz is being sold on BreachForums. OFBiz underpins ERP and e-commerce operations at many enterprises, so a working RCE enables full server compromise and data theft. Organizations running OFBiz should prioritise patching and network monitoring.

MetadataRECORD
CategoryOther
Severityhigh
Priority score60
Detected10 September 2026 · 15:12 UTC
Related items6
Other78
Exploit público para RCE crítica en Oracle WebLogic Proxy Plug-in (CVE-2026-21962)A working exploit for a critical remote code execution vulnerability in Oracle WebLogic Proxy Plug-in (CVE-2026-21962) was published on a Russian underground forum. WebLogic is widely deployed in enterprise and government environments, including Latin America, making this a potential initial access vector. Organizations should validate exposure and apply the vendor patch immediately.
15d
Other30
Solicitud de compra de base de datos peruana PE-9MA NulledBB user is seeking to buy a database named PE-9M.db, likely containing roughly 9 million records from Peru. The request shows that a substantial Peruvian personal data set continues to circulate in underground markets and could be used for fraud or targeted attacks. Although it is a wanted ad rather than a new leak, it is a useful signal for defenders monitoring exposure of Peruvian data.
18d
Other30
Solicitud de compra de datos de tarjetas brasileñas (CVV, CPF, etc.)An actor is actively seeking to buy Brazilian credit card data, including CVV, name, address, CPF, and region. This indicates a targeted interest in Brazilian financial information, which could be used for fraud. While it's a request, it signals demand for data from Latin America.
49d
Other35
Universidad Mayor de San Andrés sufre hackeo y posible fuga de datosThe hacker group AnkaTeam claimed to have attacked the Universidad Mayor de San Andrés (UMSA) in Bolivia. Specific details about compromised data have not been disclosed, but there is a risk of exposure of academic and personal information of students and staff. The university is advised to conduct a security audit and monitor for potential leaks on underground forums.
54d
Other50
Hackeo a la Universidad Mayor de San Andrés (UMSA) por AnkaTeamThe group AnkaTeam claims to have hacked the systems of Universidad Mayor de San Andrés (UMSA), one of Bolivia's leading universities. While the exact nature of the breach is unclear, the incident poses a significant security risk to the university community and the country's academic infrastructure.
54d
Other60
Plantilla PSD de pasaporte chileno ofrecida para evasión de KYCA PSD template of a Chilean passport with 1998 date of birth has been posted on an underground forum. Although not a real data leak, it can be used to create fake documents to bypass KYC checks. This poses a risk for entities relying on visual passport authenticity.
56d