New OVSwrap Linux Kernel Flaw Lets Local Users Gain Root via Open vSwitch

2026-08-05T13:24:00Z1da4d0661024f31e50b0e4e9bd1b917633aa7d50b1557a0159fa6ceeb65ec49a
CVE-2026-17583CVE-2026-18556CVE-2026-18577CVE-2026-58048CVE-2026-59774CVE-2026-64531CVE-2026-9198Apache TomcatCISA KEVGiteaLangflowLinux kernelMFA bypassN-able N-centralOAuth tokensOpen VSXOpen vSwitchRATactively exploited vulnerabilitiesbackdoorcPanelcredential theftdevice code phishinglocal privilege escalationmalicious extensionsmalicious packagesnpm supply chainphishing-as-a-serviceransomwareremote code executiontrojanized installerunauthenticated file read

What happened

The feed highlights multiple high-impact cybersecurity threats, including actively exploited vulnerabilities, unauthenticated remote file disclosure, local privilege escalation, phishing-as-a-service campaigns bypassing MFA, leaked API credentials, malicious software packages and extensions, and supply-chain malware. The most severe items include the critical Gitea file-read flaw (CVE-2026-59774), actively exploited Langflow and N-central vulnerabilities, and credential-stealing npm worms and phishing campaigns targeting cloud identities.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
1da4d0661024f31e50b0e4e9bd1b917633aa7d50b1557a0159fa6ceeb65ec49a
Enrichment time
2026-08-05T13:24:00Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.