Cloud & DevSecOps Security Collection
Cloud misconfigurations, container security, and DevSecOps pipeline risk.
2026-07-29 · HIGHproot-distro has a Container Isolation Bypass via Crafted Restore Archive
CVE-2026-54727CVE-2026-54727
2026-07-29 · CRITICAL
AgentCore CLI Bedrock Agent Import Vulnerable to Code Injection via Improper Triple-Quote Escaping
CVE-2026-11393CVE-2026-11393
2026-07-26 · HIGH
CVE-2026-62835: Improper authorization in Azure Portal allows an unauthorized attacker to disclose information over a network.
CVE-2026-62835
2026-07-26 · HIGH
CVE-2026-17107: A flaw was found in the cluster-proxy service-proxy component used in Red Hat Advanced Cluster Management for Kubernetes
CVE-2026-17107
2026-07-26 · HIGH
CVE-2026-58630: Improper access control in Azure App Service allows an unauthorized attacker to elevate privileges over a network.
CVE-2026-58630
2026-07-26 · HIGH
CVE-2026-56163: Missing authentication for critical function in Microsoft Azure Kubernetes Service allows an unauthorized attacker to el
CVE-2026-56163
2026-07-24 · HIGH
2026-07-tare-nightbox33-cloud exploit
2026-07-24 · CRITICALCritical: Hackers Abuse GitHub Actions to Exploit cPanel and WHM Servers and Steal Cloud C (CVE-2026-41940)
CVE-2026-41940
2026-07-23 · CRITICAL
Hackers Abuse GitHub Actions to Exploit cPanel and WHM Servers and Steal Cloud Credentials
2026-07-22 · HIGHcloud-misconfig-lab exploit
2026-07-22 · HIGHCloud operations become the next big role for agentic AI
2026-07-21 · HIGHaws-cdk-lib: OS Command Injection in NodejsFunction Docker Bundling
CVE-2026-13760CVE-2026-13760
2026-07-21 · HIGH
wp-ssrf-cloud-metadata exploit
2026-07-21 · HIGHKubernetesExploitationGuide exploit
2026-07-16 · MEDIUMLearning DevSecOps - Week 2
2026-07-15 · MEDIUMVirtual Event Today: Cloud & Data Security Summit
2026-07-14 · HIGHWoodpecker: Privilege escalation via unrestricted serviceAccountName in the Kubernetes backend
CVE-2026-61549CVE-2026-61549
2026-07-14 · MEDIUM
SAP warns of critical flaws in NetWeaver and Commerce Cloud
2026-07-14 · MEDIUMSAP Patches Critical Vulnerabilities in NetWeaver, Approuter, Commerce Cloud
2026-07-10 · MEDIUMHackers exploit critical auth bypass in Gitea Docker image
2026-07-08 · MEDIUMLone Attacker Uses AI to Breach AWS Cloud Environment in 72 Hours
2026-07-08 · HIGH15-Year-Old GhostLock Flaw Enables Root and Container Escape on Most Linux Distros
CVE-2026-43499
2026-07-07 · MEDIUM