Rapid7 and Our Global Partners Are Elevating Security Together
2026-03-05T07:23:59Z•2e60241be2ae5122a89f5d295df8ec6961e5125683afa9b98135dd1d23d374d1
CVE-2024-37032CVE-2026-1731CVE-2026-20127CVE-2026-2329ai-securityappsecciscoclaudedicomglobal-summithealthcaremetasploitmulti-tenant-apirampransomware
What happened
Collection of Rapid7 posts highlighting multiple high-impact security topics: a critical authentication-bypass in Cisco Catalyst SD‑WAN (CVE-2026-20127) is being actively exploited in the wild and requires urgent patching; Metasploit additions include exploits and module updates referencing CVE-2024-37032 (Ollama path traversal → RCE), CVE-2026-2329 (Grandstream GXP1600 stack overflow), and CVE-2026-1731 (BeyondTrust command injection), plus new evasion tooling. Other briefs cover exposed DICOM imaging servers in UK healthcare (internet-exposed Port 104 risk), fragmentation of the ransomware/R
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- rapid7_blog
- Record identifier
- 2e60241be2ae5122a89f5d295df8ec6961e5125683afa9b98135dd1d23d374d1
- Enrichment time
- 2026-03-05T07:23:59Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.