Pwn2Own Berlin 2026, Day Two: $385,750 more, Microsoft Exchange falls, and the running total crosses $900K

2026-05-16T08:51:48Zdc75902fa3e2d8c5d12b4d07f2ba5ba1b9b99a619a5b899115e1ec57e9194454
BitLockerBroadcomCISA KEVCTFMONCVE-2026-20182CVE-2026-41702CVE-2026-42897CVE-2026-42945CVE-2026-46300Cisco Catalyst SD-WANFamousSparrowFragnesiaGhostwriterGreenPlasmaLinux kernelMicrosoft ExchangeNGINX RiftVMware FusionYellowKeyexploit-in-the-wildpwn2ownzero-day

What happened

Feed highlights major vulnerability disclosures and active exploitation across May 14–15, 2026: Pwn2Own Berlin paid researchers large rewards (Day 1: $523K; Day 2: $385.75K, $908,750 total) for dozens of zero-days. Microsoft confirmed active exploitation of an Exchange Server XSS zero-day (CVE-2026-42897). Researchers disclosed Windows zero-days (YellowKey affecting BitLocker; GreenPlasma affecting CTFMON). CISA added a critical Cisco Catalyst SD‑WAN flaw (CVE-2026-20182, CVSS 10.0) to its Known Exploited Vulnerabilities catalog. New kernel/local‑privilege issues include Fragnesia (Linux, CVE-

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
securityaffairs
Record identifier
dc75902fa3e2d8c5d12b4d07f2ba5ba1b9b99a619a5b899115e1ec57e9194454
Enrichment time
2026-05-16T08:51:48Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Pwn2Own Berlin 2026, Day Two: $385,750 more, Microsoft Exchange falls, and the running total crosses $900K · Baitaphish