RSS NOC Intelligence

Decision console · v2.1.0 · refresh 15 min · alert ≥ 50 · critical ≥ 85
DB: /data/rssnoc.db
Articles: 423CRITICAL: 11HIGH: 44MEDIUM: 75LOW: 77Unread: 323Incidents: 421Dupes: 0Feed errors: 0Fetch now
FeedIncidentsSourcesOps

Intelligence Feed

showing 11 items
LMDeploy CVE-2026-33626 Flaw Exploited Within 13 Hours of Disclosure
Unknown · Unknown · src 0 · Fri, 24 Apr 2026 12:54:00 +0530 · HIGH 100
A high-severity security flaw in LMDeploy, an open-source toolkit for compressing, deploying, and serving large language models (LLMs), has come under active exploitation in the wild less than 13 hours after its public disclosure. The vulnerability, tracked as CVE-2026-33626 (CVSS score: 7.5), relates to a Server-Side Request Forgery (SSRF) vulnerability that could be exploited to access
Match: rce, exploit, cve-, llm · mark read
Critical Unpatched Flaw Leaves Hugging Face LeRobot Open to Unauthenticated RCE
Unknown · Unknown · src 0 · Tue, 28 Apr 2026 16:48:00 +0530 · HIGH 100
Cybersecurity researchers have disclosed details of a critical security flaw impacting LeRobot, Hugging Face's open-source robotics platform with nearly 24,000 GitHub stars, that could be exploited to achieve remote code execution. The vulnerability in question is CVE-2026-25874 (CVSS score: 9.3), which has been described as a case of untrusted data deserialization stemming from the use of the
Match: critical, rce, remote code execution, exploit, cve- · mark read
Researchers Discover Critical GitHub CVE-2026-3854 RCE Flaw Exploitable via Single Git Push
Unknown · Unknown · src 0 · Tue, 28 Apr 2026 23:49:00 +0530 · HIGH 100
Cybersecurity researchers have disclosed details of a critical security vulnerability impacting GitHub.com and GitHub Enterprise Server that could allow an authenticated user to obtain remote code execution with a single "git push" command. The flaw, tracked as CVE-2026-3854 (CVSS score: 8.7), is a case of command injection that could allow an attacker with push access to a repository to achieve
Match: critical, rce, remote code execution, exploit, cve- · mark read
Hackers are exploiting a critical LiteLLM pre-auth SQLi flaw
Unknown · Unknown · src 0 · Tue, 28 Apr 2026 17:07:23 -0400 · HIGH 100
Hackers are targeting sensitive information stored in the LiteLLM open-source large-language model (LLM) gateway by exploiting a critical vulnerability  tracked as CVE-2026-42208. [...]
Match: critical, rce, exploit, cve-, llm · mark read
GitHub fixes RCE flaw that gave access to millions of private repos
Unknown · Unknown · src 0 · Wed, 29 Apr 2026 08:41:17 -0400 · HIGH 100
In early March, GitHub patched a critical remote code execution vulnerability (CVE-2026-3854) that could have allowed attackers to access millions of private repositories. [...]
Match: critical, rce, remote code execution, cve- · mark read
Patch Tuesday, April 2026 Edition
Unknown · Unknown · src 0 · Tue, 14 Apr 2026 21:47:59 +0000 · HIGH 100
Microsoft today pushed software updates to fix a staggering 167 security vulnerabilities in its Windows operating systems and related software, including a SharePoint Server zero-day and a publicly disclosed weakness in Windows Defender dubbed "BlueHammer." Separately, Google Chrome fixed its fourth zero-day of 2026, and an emergency update for Adobe Reader nixes an actively exploited flaw that can lead to remote cod
Match: zero-day, remote code execution, actively exploited, exploit · mark read
No Exploit Needed: How Attackers Walk Through the Front Door via Identity-Based Attacks
Unknown · Unknown · src 0 · Tue, 21 Apr 2026 17:00:00 +0530 · HIGH 95
The cybersecurity industry has spent the last several years chasing sophisticated threats like zero-days, supply chain compromises, and AI-generated exploits. However, the most reliable entry point for attackers still hasn't changed: stolen credentials. Identity-based attacks remain a dominant initial access vector in breaches today. Attackers obtain valid credentials through credential stuffing
Match: zero-day, exploit, supply chain · mark read
Microsoft Confirms Active Exploitation of Windows Shell CVE-2026-32202
Unknown · Unknown · src 0 · Tue, 28 Apr 2026 11:20:00 +0530 · HIGH 90
Microsoft on Monday revised its advisory for a now-patched, high-severity security flaw impacting Windows Shell to acknowledge that it has been actively exploited in the wild. The vulnerability in question is CVE-2026-32202 (CVSS score: 4.3), a spoofing vulnerability that could allow an attacker to access sensitive information. It was addressed as part of its Patch Tuesday update for this
Match: actively exploited, exploit, cve- · mark read
CISA Adds Actively Exploited ConnectWise and Windows Flaws to KEV
Unknown · Unknown · src 0 · Wed, 29 Apr 2026 14:16:00 +0530 · HIGH 90
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added two security flaws impacting ConnectWise ScreenConnect and Microsoft Windows to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of active exploitation. The vulnerabilities are listed below - CVE-2024-1708 (CVSS score: 8.4) - A path traversal vulnerability in  ConnectWise ScreenConnect
Match: actively exploited, exploit, cve- · mark read
Cohere AI Terrarium Sandbox Flaw Enables Root Code Execution, Container Escape
Unknown · Unknown · src 0 · Wed, 22 Apr 2026 12:46:00 +0530 · HIGH 85
A critical security vulnerability has been disclosed in a Python-based sandbox called Terrarium that could result in arbitrary code execution. The vulnerability, tracked as CVE-2026-5752, is rated 9.3 on the CVSS scoring system. "Sandbox escape vulnerability in Terrarium allows arbitrary code execution with root privileges on a host process via JavaScript prototype chain traversal," according to
Match: critical, cve-, container escape · mark read
LiteLLM CVE-2026-42208 SQL Injection Exploited within 36 Hours of Disclosure
Unknown · Unknown · src 0 · Wed, 29 Apr 2026 11:04:00 +0530 · HIGH 85
In yet another instance of threat actors quickly jumping on the exploitation bandwagon, a newly disclosed critical security flaw in BerriAI's LiteLLM Python package has come under active exploitation in the wild within 36 hours of the bug becoming public knowledge. The vulnerability, tracked as CVE-2026-42208 (CVSS score: 9.3), is an SQL injection that could be exploited to modify the underlying
Match: critical, exploit, cve-, llm · mark read

Incident Board

Patch Tuesday, April 2026 Edition
HIGH 100 · articles 1 · sources ["Unknown"] · last 2026-04-29T14:14:43.829861+00:00
Researchers Discover Critical GitHub CVE-2026-3854 RCE Flaw Exploitable via Single Git Push
HIGH 100 · articles 2 · sources ["Unknown"] · last 2026-04-29T14:14:43.829861+00:00
Hackers are exploiting a critical LiteLLM pre-auth SQLi flaw
HIGH 100 · articles 2 · sources ["Unknown"] · last 2026-04-29T14:14:43.829861+00:00
Critical Unpatched Flaw Leaves Hugging Face LeRobot Open to Unauthenticated RCE
HIGH 100 · articles 1 · sources ["Unknown"] · last 2026-04-29T14:14:43.829861+00:00
LMDeploy CVE-2026-33626 Flaw Exploited Within 13 Hours of Disclosure
HIGH 100 · articles 1 · sources ["Unknown"] · last 2026-04-29T14:14:43.829861+00:00
No Exploit Needed: How Attackers Walk Through the Front Door via Identity-Based Attacks
HIGH 95 · articles 1 · sources ["Unknown"] · last 2026-04-29T14:14:43.829861+00:00
CISA Adds Actively Exploited ConnectWise and Windows Flaws to KEV
HIGH 90 · articles 1 · sources ["Unknown"] · last 2026-04-29T14:14:43.829861+00:00
Microsoft Confirms Active Exploitation of Windows Shell CVE-2026-32202
HIGH 90 · articles 1 · sources ["Unknown"] · last 2026-04-29T14:14:43.829861+00:00
Cohere AI Terrarium Sandbox Flaw Enables Root Code Execution, Container Escape
HIGH 85 · articles 1 · sources ["Unknown"] · last 2026-04-29T14:14:43.829861+00:00
Microsoft Patches Critical ASP.NET Core CVE-2026-40372 Privilege Escalation Bug
HIGH 80 · articles 1 · sources ["Unknown"] · last 2026-04-29T14:14:43.829861+00:00
Kubernetes v1.36: Fine-Grained Kubelet API Authorization Graduates to GA
HIGH 80 · articles 1 · sources ["Unknown"] · last 2026-04-29T14:14:43.829861+00:00
CISA orders feds to patch Windows flaw exploited as zero-day
HIGH 75 · articles 1 · sources ["Unknown"] · last 2026-04-29T14:14:43.829861+00:00

NOC Summary

Recent fetch runs

StartStatusFeedsNewDupesErr
2026-06-18T14:48:30.456319+00:00degraded12001
2026-06-18T14:48:21.674716+00:00degraded14001
2026-06-18T14:33:21.674507+00:00degraded14101
2026-06-18T14:18:21.673935+00:00degraded14001
2026-06-18T14:03:21.712729+00:00degraded14301
2026-06-18T13:48:21.675031+00:00degraded14301
2026-06-18T13:33:21.674145+00:00degraded14301
2026-06-18T13:18:21.674258+00:00degraded14101

Feed health

CategoryFeedsErrors

Top weights

Timeline last 24h

No timeline data.

Alert history

TimeChannelStatusArticle
No alerts

Source ranking

CatSourceTrustArticlesHighError

Add RSS Feed

Add Keyword Weight

Feeds

CatNameSrcStateError

Keywords

KeywordWeight