rehme.infosec | Penetrationtests, Code Audit, Stuttgart - rehme.infosec

Security lab

Visit my lab to explore the security vulnerabilities I’ve identified and publicly disclosed.

Computer things... beep.  Ethical Hacker. Coder.

Something happens...

What’s going on in the world?

Security advisories from CISA

This feed highlights newly added vulnerabilities from the CISA Known Exploited Vulnerabilities (KEV) catalog. The entries represent security flaws that are actively exploited in the wild.

BerriAI / LiteLLM
Known Exploited Added: 08.05.2026 Due: 11.05.2026
BerriAI LiteLLM contains a SQL injection vulnerability that allows an attacker to read data from the proxy's database and potentially modify it, leading to unauthorised access to the proxy and the credentials it manages. Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the produc ...
Ivanti / Endpoint Manager Mobile (EPMM)
Known Exploited Added: 07.05.2026 Due: 10.05.2026
Ivanti Endpoint Manager Mobile (EPMM) contains an improper input validation vulnerability that allows a remotely authenticated user with administrative access to achieve remote code execution. Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavail ...
Palo Alto Networks / PAN-OS
Known Exploited Added: 06.05.2026 Due: 09.05.2026
Palo Alto Networks PAN-OS contains an out-of-bounds write vulnerability in the User-ID Authentication Portal (aka Captive Portal) service that can allow an unauthenticated attacker to execute arbitrary code with root privileges on the PA-Series and VM-Series firewalls by sending specially crafted packets. Required action: Apply mitigations per vendor instructions, fol ...
Linux / Kernel
Known Exploited Added: 01.05.2026 Due: 15.05.2026
Linux Kernel contains an incorrect resource transfer between spheres vulnerability that could allow for privilege escalation. Required action: "Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable. Due date: 2026-05-15 Known ransomware campaign use: Unknow ...
Microsoft / Windows
Known Exploited Added: 28.04.2026 Due: 12.05.2026
Microsoft Windows Shell contains a protection mechanism failure vulnerability that allows an unauthorized attacker to perform spoofing over a network. Required action: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable. Due date: 2026-05-12 Known ransomw ...