DEV Community

Diego Diaz profile picture

Diego Diaz

Systems Engineering student building Sable & AEGIS. Cybersecurity, pentesting & AI enthusiast. Coding from Dominican Republic 🇩🇴

Joined Joined on  Personal website https://sable.somoswilab.com/
Google Pixel Modem Zero‑Day (CVE‑2026‑58704) Actively Exploited and Patched

Google Pixel Modem Zero‑Day (CVE‑2026‑58704) Actively Exploited and Patched

5
Comments
2 min read
Unpatched Magento and Adobe Commerce Zero-Day Exploited to Backdoor Online Stores

Unpatched Magento and Adobe Commerce Zero-Day Exploited to Backdoor Online Stores

Comments
2 min read
Next.js Patches Critical AVIF and Windows Path Traversal Flaws Enabling Unauthenticated RCE

Next.js Patches Critical AVIF and Windows Path Traversal Flaws Enabling Unauthenticated RCE

Comments
2 min read
Mirage2FA Phishing-as-a-Service Hijacks Microsoft 365 Sessions at Scale

Mirage2FA Phishing-as-a-Service Hijacks Microsoft 365 Sessions at Scale

Comments
3 min read
Active Oracle WebLogic Flaw Exposes Critical Data – CVE‑2026‑21962

Active Oracle WebLogic Flaw Exposes Critical Data – CVE‑2026‑21962

Comments
2 min read
Critical GitLab GraphQL Flaw (CVE‑2026‑19478) Enables Remote Deletion of Public Projects

Critical GitLab GraphQL Flaw (CVE‑2026‑19478) Enables Remote Deletion of Public Projects

Comments
3 min read
Microsoft Entra ID Flaw (CVE-2026-69836) Exploited in the Wild – Critical Remote Code Execution

Microsoft Entra ID Flaw (CVE-2026-69836) Exploited in the Wild – Critical Remote Code Execution

Comments
1 min read
Critical MLflow SSRF Vulnerability (CVE-2026-64849) Enables Massive Cloud Credential Theft

Critical MLflow SSRF Vulnerability (CVE-2026-64849) Enables Massive Cloud Credential Theft

Comments
3 min read
Critical GitLab GraphQL Flaw (CVE-2026-19478) Allows Unauthenticated Deletion of Public Projects

Critical GitLab GraphQL Flaw (CVE-2026-19478) Allows Unauthenticated Deletion of Public Projects

Comments
3 min read
Critical SharePoint JWT Authentication Bypass CVE-2026-55040 Exploited in the Wild

Critical SharePoint JWT Authentication Bypass CVE-2026-55040 Exploited in the Wild

Comments
2 min read
Cisco ASA and FTD Remote DoS Flaw Actively Exploited

Cisco ASA and FTD Remote DoS Flaw Actively Exploited

Comments
2 min read
CISA Flags Langflow, Tomcat, and N-central Flaws as Actively Exploited (CVE‑2026‑9198, CVE‑2026‑34486, CVE‑2026‑18556)

CISA Flags Langflow, Tomcat, and N-central Flaws as Actively Exploited (CVE‑2026‑9198, CVE‑2026‑34486, CVE‑2026‑18556)

Comments
3 min read
Critical RCE in Hugging Face LeRobot (CVE‑2026‑25874) Exposes Robotics Infrastructure

Critical RCE in Hugging Face LeRobot (CVE‑2026‑25874) Exposes Robotics Infrastructure

Comments
2 min read
N-able N-central Authentication Bypass Exploited: Active Attacks on MSPs