Progress Kemp LoadMaster Flaw Could Let Attackers Run Root Commands Pre-Auth

A critical vulnerability in Progress Kemp LoadMaster can let an unauthenticated attacker execute arbitrary commands as root on the appliance by sending a crafted request to its API.

The flaw, tracked as CVE-2026-8037, carries a CVSS score of 9.8 according to ZDI. A patch is available. If you run LoadMaster with the API enabled, update now.

Progress published its advisory on June

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Grindr CEO Says AI Is Doing the Work of 200 Engineers

Grindr CEO Says AI Is Doing the Work of 200 Engineers Source: Hacker News

144 Mastra npm Packages Compromised via Hijacked Contributor Account

144 Mastra npm Packages Compromised via Hijacked Contributor Account As many as 144 npm packages associated with the Mastra namespace (“@mastra/*”), a popular open-source JavaScript and TypeScript framework for building

Attack Update: Top 5 Attack-IPs auf doode.info – 20.07.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. 89.167.35.212 — 188 requests (recent log) 216.244.66.232 — 41 requests (recent log) 195.250.27.224 — 34 requests (recent