CVE-2026-8933: Ubuntu security flaw breaks Snap sandbox protections

2026-07-23T08:51:52Z4608cfbdc53f808c0b94da7852c463c2255774febb1110daf43cbe5da757236d
active-exploitationai-securityiot-compromiselocal-privilege-escalationpatch-releasedproof-of-conceptransomwarerceremote-code-executionthreat-advisory

What happened

Multiple high- and critical-severity vulnerabilities and active exploit reports surfaced across widely used products: a public PoC has triggered active exploitation of critical Microsoft SharePoint RCE (CVE-2026-50522, CVSS 9.8); attackers are exploiting a critical pre-auth RCE in ServiceNow (CVE-2026-6875); Qilin ransomware affiliates are abusing a critical PAN-OS GlobalProtect authentication bypass (CVE-2026-0257) to gain VPN access; Ubuntu Desktop snap-confine suffers a local privilege escalation race condition (CVE-2026-8933, CVSS 7.8); an Adobe Acrobat Chrome extension chain (CVE-2026-482

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
4608cfbdc53f808c0b94da7852c463c2255774febb1110daf43cbe5da757236d
Enrichment time
2026-07-23T08:51:52Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · CVE-2026-8933: Ubuntu security flaw breaks Snap sandbox protections · Baitaphish