FACTUALRISK Cyber Intelligence
Mise à jour : 29 May 2026 · 18:02
← Accueil
🗞 Briefing🛡 Dashboard💥 Attaques🔧 Patches🦠 Ransomware📡 Exploitation🌍 Géopolitique🕵️ Acteurs Supply Chain🎯 IOC Tracker📋 Compliance📰 News📈 Statistiques
← Retour FactualRisk
Niveau CRITIQUE · 29 May 2026
🔴 20 vulnérabilités critiques — action immédiate requise
Mis à jour le 29 May 2026 · 18:02 UTC · 20 P0 · 11 P1 · 21 KEV exploités · 23 ransomware · 24 ITW · 130 vulnérabilités analysées · Voir le tableau complet →
?
P0 Critiques
Action immédiate
?
P1 Élevés
Sous 72h
?
KEV actifs
Exploités CISA ↗
?
Ransomware
?
Analysés
130
Findings total
💥 Incidents & Attaques récentes Tout voir →
🔓
INFO Data Breach · SecurityWeek · 29 May 2026
Charter Communications Data Breach Could Impact Nearly 5 Million
🎣
🎣
INFO Phishing · SecurityWeek · 29 May 2026
MokN Raises $15 Million for Phish-Back Platform
🌐
💥
INFO Autre · BleepingComputer · 29 May 2026
Dutch govt disrupts malware botnet with 17 million infected devices
📊 Top 5 types d'attaques
💥 Autre 16
🎣 Phishing 6
🌐 DDoS 6
🔓 Data Breach 4
⚡ Zero-Day 4
📰 Actualités cyber du jour Tout voir →
SecurityWeek 29 May 2026
Charter Communications Data Breach Could Impact Nearly 5 Million
The notorious ShinyHunters extortion group leaked over 42 million records allegedly stolen from Charter in April. The post Charter Communications Data Breach Could Impact Nearly 5 Million appeared
The Hacker News 29 May 2026
Attackers Use LLM Agent for Post-Exploitation After Marimo CVE-2026-39987 Exploit
An unknown threat actor has been observed using a large language model (LLM) agent to conduct post-compromise actions after obtaining initial access following the exploitation of a publicly-accessible
SecurityWeek 29 May 2026
MokN Raises $15 Million for Phish-Back Platform
MokN's platform deploys realistic decoy access points to lure attackers into revealing compromised credentials, enabling organizations to respond before abuse occurs. The post MokN Raises $15 Milli
BleepingComputer 29 May 2026
From $5 Attacks to Botnet-Powered Platforms: Inside the DDoS-as-a- Service Market
DDoS attacks are increasingly being sold like subscription services, complete with pricing tiers, support, and reseller programs. Flare explores how the DDoS-as-a-Service market has evolved from scatt
BleepingComputer 29 May 2026
Dutch govt disrupts malware botnet with 17 million infected devices
Dutch authorities have taken offline a massive botnet of 17 million devices and seized more than 200 servers at a local provider that supported the operation. [...]
SecurityWeek 29 May 2026
Gogs Zero-Day Exposes Servers to Remote Code Execution
The critical-severity issue, assigned a CVSS score of 9.4, is an argument injection flaw that can be exploited by authenticated attackers via pull requests with malicious branch names. The post Gog
🎯 Cartographie risques CVSS × EPSS Zone rouge = critique
2468100.250.500.751.00ZONE CRITIQUECVE-2026-48027 CVSS=9.8 EPSS=0.268CVE-2026-45321 CVSS=9.6 EPSS=0.000CVE-2026-8398 CVSS=9.8 EPSS=0.000CVE-2026-48172 CVSS=9.8 EPSS=0.080CVE-2026-9082 CVSS=9.8 EPSS=0.342CVE-2025-34291 CVSS=8.8 EPSS=0.348CVE-2026-34926 CVSS=6.7 EPSS=0.008CVE-2008-4250 CVSS=9.8 EPSS=0.921CVE-2009-1537 CVSS=8.8 EPSS=0.530CVE-2009-3459 CVSS=8.8 EPSS=0.881CVE-2010-0249 CVSS=8.8 EPSS=0.888CVE-2010-0806 CVSS=8.8 EPSS=0.873CVE-2026-41091 CVSS=7.8 EPSS=0.059CVE-2026-45498 CVSS=4.0 EPSS=0.041CVE-2026-42897 CVSS=8.1 EPSS=0.075CVE-2026-20182 CVSS=10.0 EPSS=0.773CVE-2026-42208 CVSS=9.8 EPSS=0.543CVE-2026-6973 CVSS=7.2 EPSS=0.049CVE-2026-0300 CVSS=9.8 EPSS=0.045CVE-2026-31431 CVSS=7.8 EPSS=0.022CVE-2026-41940 CVSS=9.8 EPSS=0.905CVE-2026-44492 CVSS=8.6 EPSS=0.000CVE-2026-44490 CVSS=4.8 EPSS=0.000CVE-2026-44489 CVSS=3.7 EPSS=0.000CVE-2026-41237 CVSS=0.0 EPSS=0.000CVE-2026-41236 CVSS=8.8 EPSS=0.000CVE-2026-41235 CVSS=8.8 EPSS=0.000CVE-2026-48501 CVSS=7.4 EPSS=0.000CVE-2026-48527 CVSS=8.7 EPSS=0.000GHSA-93rg-2xm5-2p9v CVSS=0.0 EPSS=0.000GHSA-cwj3-vqpp-pmxr CVSS=8.8 EPSS=0.000CVE-2026-44997 CVSS=4.3 EPSS=0.000CVE-2026-44991 CVSS=4.2 EPSS=0.000GHSA-gfg9-5357-hv4c CVSS=0.0 EPSS=0.000GHSA-qp9x-wp8f-qgjj CVSS=4.0 EPSS=0.000CVE-2026-8783 CVSS=4.3 EPSS=0.000CVE-2026-8782 CVSS=4.3 EPSS=0.001CVE-2026-8781 CVSS=4.3 EPSS=0.001CVE-2026-8780 CVSS=4.3 EPSS=0.001CVE-2026-8779 CVSS=4.3 EPSS=0.001CVE-2026-47179 CVSS=7.7 EPSS=0.000CVE-2026-8771 CVSS=7.3 EPSS=0.000CVE-2026-42563 CVSS=0.0 EPSS=0.000CVE-2026-42305 CVSS=8.8 EPSS=0.000CVE-2026-45401 CVSS=8.5 EPSS=0.000CVE-2026-5394 CVSS=0.0 EPSS=0.000GHSA-c8g3-x47w-8q7p CVSS=0.0 EPSS=0.000CVE-2026-47718 CVSS=0.0 EPSS=0.000CVE-2026-8766 CVSS=4.3 EPSS=0.000CVE-2026-47144 CVSS=5.5 EPSS=0.000CVE-2026-47128 CVSS=6.1 EPSS=0.000CVE-2026-46644 CVSS=0.0 EPSS=0.000CVE-2026-4054 CVSS=4.3 EPSS=0.001CVE-2026-4053 CVSS=3.1 EPSS=0.001CVE-2026-46526 CVSS=5.0 EPSS=0.000CVE-2026-31240 CVSS=7.5 EPSS=0.001CVE-2026-46439 CVSS=7.8 EPSS=0.000CVE-2026-46405 CVSS=5.3 EPSS=0.000CVE-2026-34531 CVSS=6.5 EPSS=0.000CVE-2026-46380 CVSS=6.7 EPSS=0.000CVE-2026-44730 CVSS=7.2 EPSS=0.000CVE-2025-55743 CVSS=0.0 EPSS=0.001CVE-2026-46358 CVSS=0.0 EPSS=0.000CVE-2026-46345 CVSS=8.4 EPSS=0.000CVE-2026-45808 CVSS=0.0 EPSS=0.000CVE-2026-45774 CVSS=0.0 EPSS=0.000CVE-2026-45756 CVSS=0.0 EPSS=0.000CVE-2026-45755 CVSS=0.0 EPSS=0.000CVE-2026-45754 CVSS=0.0 EPSS=0.000CVE-2026-45287 CVSS=0.0 EPSS=0.000CVE-2026-41178 CVSS=5.3 EPSS=0.000CVE-2026-22872 CVSS=0.0 EPSS=0.000CVE-2026-30963 CVSS=3.9 EPSS=0.000CVE-2026-45753 CVSS=0.0 EPSS=0.000CVE-2026-35676 CVSS=8.2 EPSS=0.000CVE-2026-35672 CVSS=7.5 EPSS=0.001CVE-2026-35675 CVSS=8.2 EPSS=0.001CVE-2026-35671 CVSS=8.8 EPSS=0.000CVE-2025-11222 CVSS=6.1 EPSS=0.000CVE-2025-46734 CVSS=6.4 EPSS=0.001CVE-2026-40091 CVSS=6.0 EPSS=0.000CVE-2026-45725 CVSS=0.0 EPSS=0.000CVE-2026-47717 CVSS=7.5 EPSS=0.000CVE-2026-47243 CVSS=0.0 EPSS=0.000CVE-2026-46621 CVSS=9.1 EPSS=0.000CVE-2026-31246 CVSS=6.5 EPSS=0.010CVE-2026-31245 CVSS=5.3 EPSS=0.001CVE-2026-31241 CVSS=6.5 EPSS=0.002CVE-2026-46562 CVSS=9.8 EPSS=0.000CVE-2026-45704 CVSS=0.0 EPSS=0.000CVE-2026-45703 CVSS=6.4 EPSS=0.000CVE-2026-31235 CVSS=9.8 EPSS=0.001CVE-2026-31236 CVSS=9.8 EPSS=0.001CVE-2026-31237 CVSS=9.8 EPSS=0.005CVE-2026-31238 CVSS=9.8 EPSS=0.001CVE-2026-31239 CVSS=9.8 EPSS=0.001CVE-2026-31233 CVSS=9.8 EPSS=0.004CVE-2026-31234 CVSS=9.8 EPSS=0.007CVE-2026-45309 CVSS=0.0 EPSS=0.000CVE-2026-45305 CVSS=0.0 EPSS=0.000CVSSEPSSP0P1P2
CVSS = sévérité (0→10) · EPSS = probabilité exploitation (0→1)
Zone rouge : CVSS ≥ 7 et EPSS ≥ 0.5 — risque maximal immédiat.
🔴 Vulnérabilités P0 — Action immédiate requise Tableau complet →
CVE-2026-48027 (2026-05-27)CVSS 9.8EPSS 26.8%KEVRWITW
Nx Console Embedded Malicious Code Vulnerability
Nx Nx Console · Conti
CVE-2026-45321 (2026-05-27)CVSS 9.6EPSS 0.0%KEVRWITW
TanStack Unspecified Vulnerability
TanStack TanStack · Conti
CVE-2026-8398 (2026-05-27)CVSS 9.8EPSS 0.0%KEVRWITW
Daemon Tools Lite Embedded Malicious Code Vulnerability
Daemon Daemon Tools Lite · Conti
CVE-2026-48172 (2026-05-26)CVSS 9.8EPSS 8.0%KEVRWITW
LiteSpeed cPanel Plugin Privilege Escalation Vulnerability
LiteSpeed cPanel Plugin · Conti
CVE-2026-9082 (2026-05-22)CVSS 9.8EPSS 34.2%KEVRWITW
Drupal Core SQL Injection Vulnerability
Drupal Core · Conti
CVE-2025-34291 (2026-05-21)CVSS 8.8EPSS 34.8%KEVRWITW
Langflow Origin Validation Error Vulnerability
Langflow Langflow · Conti
CVE-2008-4250 (2026-05-20)CVSS 9.8EPSS 92.1%KEVRWITW
Microsoft Windows Buffer Overflow Vulnerability
Microsoft Windows · Conti
CVE-2009-1537 (2026-05-20)CVSS 8.8EPSS 53.0%KEVRWITW
Microsoft DirectX NULL Byte Overwrite Vulnerability
Microsoft DirectX · Conti
CVE-2009-3459 (2026-05-20)CVSS 8.8EPSS 88.1%KEVRWITW
Adobe Acrobat and Reader Heap-Based Buffer Overflow Vulnerability
Adobe Acrobat and Reader · Conti
CVE-2010-0249 (2026-05-20)CVSS 8.8EPSS 88.8%KEVRWITW
Microsoft Internet Explorer Use-After-Free Vulnerability
Microsoft Internet Explorer · Conti
CVE-2010-0806 (2026-05-20)CVSS 8.8EPSS 87.3%KEVRWITW
Microsoft Internet Explorer Use-After-Free Vulnerability
Microsoft Internet Explorer · Conti
CVE-2026-41091 (2026-05-20)CVSS 7.8EPSS 5.9%KEVRWITW
Microsoft Defender Link Following Vulnerability
Microsoft Defender · Conti
CVE-2026-42897 (2026-05-15)CVSS 8.1EPSS 7.5%KEVRWITW
Microsoft Exchange Server Cross-Site Scripting Vulnerability
Microsoft Microsoft · Conti
CVE-2026-20182 (2026-05-14)CVSS 10.0EPSS 77.3%KEVITW
Cisco Catalyst SD-WAN Controller Authentication Bypass Vulnerability
Cisco Catalyst SD-WAN
CVE-2026-42208 (2026-05-08)CVSS 9.8EPSS 54.3%KEVRWITW
BerriAI LiteLLM SQL Injection Vulnerability
BerriAI LiteLLM · Conti
🏭 Éditeurs les plus exposés
composer34
pip26
go20
npm14
Ubuntu8