Tag
#CVSS 9.8
newsCRITICAL 9.8
Critical Check Point VPN Flaws Enable Remote Code Execution
The Dutch NCSC warns of two critical vulnerabilities in Check Point VPN products, both with a CVSS score of 9.8, which could enable remote code execution. These flaws are actively exploited, posing a significant risk to networks. Immediate patching and restricted VPN access are recommended.
blogCRITICAL 9.8
Understanding and Defending Against Unauthenticated Bypass Vulnerability in Headless Single Sign On
This educational analysis delves into CVE-2026-28148, a critical unauthenticated bypass vulnerability in the Headless Single Sign On plugin for WordPress. The vulnerability, with a CVSS score of 9.8, affects versions up to 1.6 and allows for unauthorized access, potentially leading to significant security breaches. We will explore the root cause, attack surface, exploitation mechanics, and provide defensive strategies.