September 9, 2026
- A FreeIPA/389-DS chain lets an anonymous LDAP client mint its own administrator. Red Hat rates the FreeIPA half, CVE-2026-76578, critical (CVSS 9.8, preliminary); the directory-server half, CVE-2026-76560 (7.5), compares the client name as plain text, so a never-authenticated client's empty name matches an empty stored value. FreeIPA's shipped one-time-password self-management ACI is exactly that shape, which is why Red Hat reproduced the chain twice against a default install. Fixed in FreeIPA 4.13.4; Red Hat's bug records showed no fixed version or advisory when checked on 8 September (The Hacker News). · Exploits & Vulnerability Research
in One Phone Call, Zero Clicks: A WeChat Worm Crossed iOS and Android