July 7, 2026
- Veeam Backup & Replication CVE-2026-44963 is an authenticated deserialization RCE letting low-privilege domain users execute code via a BinaryFormatter-based endpoint, thanks to insecure class filtering and broad authorization. Patches add gadget-class restrictions (SecureLayer7). · Vulnerabilities & Exploits
in A 16-Year-Old KVM Flaw Punches Through the Hypervisor Boundary