Tag: whitehateu

Week 18 – Behind the Mask: SharePoint Spoofing in the Wild

27 Apr – 03 May 2026 In this week’s CVE of the Week we’ll be looking CVE-2025-32201, a spoofing vulnerability in Microsoft SharePoint Server caused by improper input validation, with a CVSS score of 6.5 It allows a remote, unauthenticated attacker to impersonate trusted users 

Week 17 – ActiveMQ Bug Hidden for 13 Years

20 -26 Apr 2026 Our CVE of the Week series continues as we reveal an Apache ActiveMQ Classic vulnerability that went undetected for 13 years before being discovered with the help of the Claude AI assistant. Tracked as CVE-2026-34197 (CVSS score: 8.8), this high-severity security 

Week 16 – Trusted Format, Hidden Threat: Exploiting Adobe Reader via PDF

13 -19 Apr 2026 In this week’s CVE of the Week, we’re looking at a critical, actively exploited vulnerability in Adobe Acrobat and Adobe Reader that allows attackers to execute arbitrary code by simply getting a user to open a malicious PDF file. CVE‑2026‑34621 is