LIVE · cybersecurity feed
Live wire
Android’s October 2026 Updates Patch 25 VulnerabilitiesAtlassian Patches Critical Vulnerability Affecting 8 ProductsEven with OT network visibility, critical infrastructure operators struggle with legacy equipmentASOS Hackers Hijack App Notifications, Claim Snowflake Data BreachKarina Portugal Makes the Case for Know Your AgentAlert: FortiBleed remains active campaign, can lock out users or lead to ransomware attacksCVE-2026-93836 · Ninja Forms plugin flaw exploited to hack WordPress sitesCVE-2026-86360 · Dell Urges Customers to Patch Critical DSU Flaw That Can Give Attackers Root AccessCVE-2026-21589 · Critical Atlassian Flaw Lets Unauthenticated Attackers Read Known Files Across 8 ProductsCVE-2026-88779 · Citrix NetScaler Hit by Third Actively Exploited Zero-Day
CVE-2026-93524

Check your X.Org server version because a dozen vulnerabilities have been patched

X.Org has released patches for a dozen security vulnerabilities affecting its X server and Xwayland components, with updates available in versions xorg-server 21.1.25 and xwayland-24.1.14. Nine of these flaws are critical, potentially allowing for arbitrary code execution, while the remaining three could lead to server crashes or information disclosure.

ZeroDay News ·

Source: Help Net Security

X.Org has released patches for a dozen security vulnerabilities affecting its X server and Xwayland components, with updates available in versions xorg-server 21.1.25 and xwayland-24.1.14. Nine of these flaws are critical, potentially allowing for arbitrary code execution, while the remaining three could lead to server crashes or information disclosure.

The majority of the vulnerabilities, specifically ten out of twelve, can be triggered by an authenticated X client, meaning a program that has already established a connection with the server. The conditions for CVE-2026-93524 and CVE-2026-93536 do not specify this requirement.

Eleven of the twelve identified issues impact both the X server and Xwayland. However, CVE-2026-93522, described as a heap buffer overflow within Glamor's CopyArea code on GPU-accelerated systems, is exclusive to Xwayland.

The nature of the flaws varies, including seven buffer overflows or out-of-bounds writes, three use-after-free vulnerabilities, one double free error, and one out-of-bounds read. Two specific vulnerabilities are tied to extensions that are enabled by default: CVE-2026-93515 requires the Present and SYNC extensions, while CVE-2026-93519 necessitates XFIXES and XTEST, in addition to over 100 active pointer barriers.

Two of the recently released fixes address issues stemming from prior incomplete patches. CVE-2026-93520 resolves a flaw that originated from an incomplete fix in commit a3171732d. Similarly, CVE-2026-93521 addresses a recurring bug pattern previously fixed in RRChangeOutputProperty, where the initial correction was applied to the RandR output path but not to the provider path.

Users operating the X server or Xwayland are advised to check their installed versions against the patched releases, 21.1.25 and 24.1.14, respectively. Each CVE entry includes a link to its corresponding fix commit on freedesktop.org GitLab for further details.

The vulnerabilities are identified by CVEs ranging from CVE-2026-93515 to CVE-2026-93526, and CVE-2026-93536. The X.Org Foundation confirmed the patching of these twelve vulnerabilities, which were discovered and reported by security researchers.

vulnerabilities in this storyCVE-2026-93524CVE-2026-93536
vulnerabilitypatchcloud
ShareXLinkedInWhatsAppFacebook

More News

view all →
vulnerabilitycritical

Android’s October 2026 Updates Patch 25 Vulnerabilities

Android’s October 2026 security updates have addressed a total of 25 vulnerabilities across the platform. Among these, a critical flaw within Android’s System component has been highlighted, which could potentially allow for privilege escalation on affected devices. The updates are designed to enhance the overall security posture of Android devices by resolving these identified weaknesses.

vulnerabilitycritical

Atlassian Patches Critical Vulnerability Affecting 8 Products

Atlassian has released patches for a critical vulnerability impacting eight of its products. The flaw, if exploited, could allow unauthenticated attackers to gain access to specific files located within the web application's root directory. This type of access could potentially expose sensitive configuration or application data, depending on the contents of the accessible files.

vulnerability

OpenSSH 10.6 enables a post-quantum signature algorithm, so experimental keys need replacing

The OpenSSH project released version 10.6 on October 6, introducing a new hybrid post-quantum signature algorithm and addressing several security vulnerabilities. The maintainers indicated that future releases may occur more frequently to expedite bug fixes, noting a rise in security reports, many identified with the assistance of AI models.

vulnerability

Automation, AI agents or people? Sorting out who handles each security finding

A recent survey of 200 senior security and technology leaders reveals significant concerns about the escalating complexity of software security programs, particularly in the wake of increased AI adoption. Over half of the respondents, primarily from companies with 10,000 or more employees, anticipate struggles in simplifying their security operations if current practices persist.

ai

AI Agent Gateway: Open-source tool keeps credentials out of agent configs

Tuskira has released AI Agent Gateway, an open-source tool designed to enhance the security of AI agent deployments by centralizing credential management and access control. The gateway operates as an intermediary between AI agents and the services they interact with, including both tool servers (referred to as MCP tools) for platforms like GitHub and Jira, and various large language model…

nation-state

AI endpoint management: Visibility, compliance, and remediation

Organizations today face a growing challenge in managing their endpoint estates, which are expanding rapidly due to factors like hybrid work models, increased cloud adoption, and the use of contractor devices. This expansion, coupled with a constant stream of new Common Vulnerabilities and Exposures (CVEs) and escalating compliance demands, often overwhelms security teams. Manual tracking and…