LIVE · cybersecurity feed
Live wire
CVE-2026-9055 · WordPress Amelia Plugin Flaw Exploited Before CVE PublicationCVE-2026-46331 · Linux Kernel Flaw Exploited After 71 Days, Not on CISA KEVCVE-2026-84434 · CVE-2026-84434 Exploited Before Publication, No Patch WindowCVE-2017-20284 · CVE-2017-20284 Exploited Same Day as PublicationCVE-2024-4405 · Malicious Extensions Hijack AI Browser Agents via Prompt ForcingCVE-2026-58138 · Critical Pre-Auth RCE in Orkes Conductor Workflow Platform Exploited in the WildCVE-2025-39682 · CISA Flags Three Linux Kernel Vulnerabilities Exploited in the WildBrevo Supply-Chain Attack Infected Over 100,000 WebsitesPublic Exploits Released for Linux Kernel Root Privilege FlawsIn Other News: Ransomware Developer Sentenced, Plugin4Shell AI Attack, Critical SAP Flaw
CVE-2017-20284high

CVE-2017-20284 Exploited Same Day as Publication

A path traversal vulnerability, CVE-2017-20284, was reported as exploited on the same day it was published. The flaw is listed in the VulnCheck KEV catalogue but not in CISA or EUVD catalogues.

zeroday.news ·

A vulnerability identified as CVE-2017-20284 was reportedly exploited in the wild on the same day it was publicly disclosed, September 18, 2026. This rapid exploitation occurred without a discernible patch window, as the vulnerability was reserved, published, and first listed as exploited on the same date.

The claim of active exploitation is primarily supported by a listing in the VulnCheck KEV (Known Exploited Vulnerabilities) catalog, which recorded it on September 18, 2026. This information was mirrored by the CIRCL aggregator, though CIRCL is not considered an independent corroborating source. Neither the CISA KEV (US federal) nor the EUVD (ENISA, European Union) catalogs currently list CVE-2017-20284 as exploited.

Public exploitation evidence was cited from two reports collected by VulnCheck and CIRCL, both dated September 18, 2026. These reports link to external sources, specifically previdian.com and cve.org, which are stated to have reported the exploitation. The accuracy of these external reports has not been independently verified.

The vulnerability's CVSS severity score is not specified, but its EPSS (Exploit Prediction Scoring System) percentile is 60.0%, with an EPSS score of 0.96%. The rapid exploitation timeline, with no gap between disclosure and observed exploitation, highlights the immediate threat posed by such vulnerabilities.

The last recorded sighting of exploitation for CVE-2017-20284 was also on September 18, 2026, coinciding with its initial disclosure and exploitation reports. This incident underscores the challenges in providing timely patches and defenses against vulnerabilities that are immediately leveraged by attackers upon public release.

vulnerabilities in this storyCVE-2017-20284
vulnerabilityzero-day
ShareXLinkedInWhatsAppFacebook

More News

view all →
vulnerability

U.S. CISA adds Linux Kernel flaws to its Known Exploited Vulnerabilities catalog

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Linux Kernel flaws to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added [1, 2] the following vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog: Below are detailed descriptions of the flaws: At the time of this writing, there are currently no details

vulnerability

SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 115

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Gray Rabbits and the Tale of a One-Click Backdoor Red Heron exploits Gitea n-day flaw in multinational campaign, exposing new Linux rootkit Malicious Twitch Browser Extension Exposes 30,000 Users’ OAuth Tokens to Russian Bot […]

CVE-2026-9055critical

WordPress Amelia Plugin Flaw Exploited Before CVE Publication

A critical privilege escalation vulnerability in the WordPress Amelia plugin was exploited before its official CVE publication. CISA has not yet added it to its Known Exploited Vulnerabilities catalog.

CVE-2026-46331high

Linux Kernel Flaw Exploited After 71 Days, Not on CISA KEV

A Linux kernel vulnerability, CVE-2026-46331, has been confirmed as exploited, but remains absent from the US federal CISA Known Exploited Vulnerabilities (KEV) catalogue.

malware

Malicious npm packages evade install-script defenses at runtime

An ongoing npm malware campaign involving the 'indexed-btree' package shows how threat actors bypass supply chain defenses by hiding malicious code in a package's normal runtime behavior rather than in installation scripts. [...]

nation-state

AI Hallucinations Nearly Triggered a US-China Military Confrontation

An AI-generated intelligence report falsely identified weapons on a Chinese ship, nearly triggering a US military operation during the Iran war. According to CNN, four sources familiar with the episode say an intelligence report circulated through the military claiming a Chinese vessel in the Middle East was carrying components for a nuclear weapons program. The […]