important2 findings, 18 signals, 1 noted6 min read

Google confirmed active exploitation of a Chrome V8 type confusion; separately, an unsigned SAML GET can forge NetScaler sessions and routed traffic can reach root on affected Nexus 9000 switches.

The Chrome outcome remains undisclosed, while the NetScaler and Nexus paths require no credentials once their affected services are reachable.

Priority findings2
01
High
Edge
Confirmed
CVE-2026-19490

A single unsigned SAML GET can forge a NetScaler Gateway or AAA session.

The affected Redirect-binding path defeats the default unsigned-assertion policy.

Affects

Customer-managed NetScaler ADC and NetScaler Gateway appliances exposing SAML-authenticated Gateway or AAA virtual servers.

What it enables

Unauthenticated session forgery on a SAML-configured NetScaler Gateway or AAA virtual server

Reach the exposed Gateway or AAA virtual server and collect the pre-authentication SAML redirect valuesSend an unsigned attacker-built assertion to GET /cgi/samlauthThe Redirect-binding parser clears strict signature enforcement and misinterprets the default unsigned-assertion policyNetScaler constructs an authenticated session from the assertion fields
Why this matters

This is a code-backed authentication bypass: a reachable SAML endpoint can construct a session from attacker-controlled assertion fields without a signed assertion.

Detail, proof-of-concept code and 4 sources
Required access

Internet reachability to an affected NetScaler Gateway or AAA virtual server with a SAML action bound

Affected versions

NetScaler ADC and Gateway 14.1 before 14.1-73.32, NetScaler ADC and Gateway 13.1 before 13.1-63.21, NetScaler ADC 14.1-FIPS before 14.1-73.32, NetScaler ADC 13.1-FIPS and 13.1-NDcPP before 13.1-37.277

Proof of concept

Public exploit code

The caller collects the pre-authentication redirect values, sends an attacker-built unsigned assertion to /cgi/samlauth, and receives a session after the parser clears strict signature enforcement.

Public code performs the forgery. Citrix has fixed builds, but pre-fix images remain accepted; matching probes do not yet establish successful compromise.

Evidence
Citrix confirms the alternate-path authentication bypass, affected configurations, versions, and fixed buildsPublic repository documents the parser behavior and contains exploit code for unsigned-session forgeryTelemetry confirms matching probes but not successful compromise
Share this finding
02
High
Edge — Network infrastructure
Confirmed
CVE-2026-20212

A routed unauthenticated caller can execute code as root on affected Cisco Nexus 9000 switches.

The exposed Silicon One services listen on TCP/43210 and TCP/43211 in the default Layer 3 VRF.

Affects

Cisco Nexus 9000 switches containing Cisco Silicon One ASICs and running NX-OS in standalone mode.

What it enables

Unauthenticated command execution as root on a network switch

Obtain routed reachability to a configured switch address in the default Layer 3 VRF.Send crafted input to TCP/43210 or TCP/43211.The S1HAL server executes the input as code with root privileges.
Why this matters

The established outcome is direct root execution from routed service reachability, not merely disruption of the switch.

Detail and 1 source
Required access

Network reachability to TCP/43210 or TCP/43211 on a locally configured switch address in the default Layer 3 VRF

Affected versions

N9324C-SE1U, N9348Y2C6D-SE1U, N9364E-SG2-O, N9364E-SG2-Q, N9396T12C-SE1, N9348Y12C-SE1, N9396Y12C-SE1, N9336C-SE1, N9K-C9804, N9K-C9808, Affected NX-OS releases identified by Cisco's Software Checker

A peer that can route to a locally configured switch address sends crafted input to the Silicon One Hardware Abstraction Layer service, which executes it with root privileges.

Cisco has published fixes, but exact version checks require its interactive Software Checker, no public reproducer is available, and pre-fix images remain accepted.

Evidence
Cisco explicitly states that crafted unauthenticated traffic can execute code as rootExact vulnerable and fixed NX-OS versions require the interactive Software Checker
Share this finding
Signals18
important · Firmware — IOS XR

Cisco's all-release IOS XR disclosure still does not identify the remotely reachable paths or resulting capabilities.

Affects

Cisco IOS XR Software, the embedded network operating system used by Cisco carrier and service-provider routers.

Seven grouped CVEs span several defect classes, but Cisco does not map individual defects to services, starting positions, or concrete outcomes.

Detail and 1 source
Composition to watch
Reach an unidentified affected IOS XR functionTrigger one of seven unmapped defectsEstablish authentication bypass, controlled corruption, or command executionThe service and post-trigger capability of each CVE remain undisclosed.
Unverified compositionObtain per-CVE technical details, SMU diffs, or a working reproducer that connects a reachable service to a controlled outcome.
important · RCE — Hosting automation

An unauthenticated WHMCS visitor can execute code in the hosting-automation server context.

Affects

WHMCS, a self-hosted billing and web-hosting automation application commonly deployed on Internet-facing servers.

WHMCS says a forged payload can reach executable server-side processing without an account or user interaction and compromise the installation.

Detail and 2 sources

A fix has shipped, but the path has no public technical reproduction or exploit code.

important · Wi-Fi — RouterOS

An authorized exponent-3 RSA public key is enough to forge RouterOS SSH authentication without its private key.

Affects

MikroTik RouterOS, the operating system used by MikroTik routers and CHR virtual routers.

The public exploit uses incomplete PKCS#1 v1.5 verification to construct a valid checked prefix, but it needs the exact exponent-3 key authorized for the account.

Detail and 2 sources
important · Firmware — Building controls

An unauthenticated firmware-update race can install unauthorized code on SAUTER building controllers.

Affects

SAUTER modulo 6 and EY-modulo 5 building-automation controllers used to operate building systems.

The race replaces an update after validation but before use.

Detail and 1 source

We do not know its practical LAN or WAN exposure or the privilege of the installed code.

Composition to watch
Reach the firmware-update serviceReplace the artifact between validation and useInstall or execute unauthorized controller codeThe listening interface and execution identity are undocumented.
Unverified compositionCapture a stock controller's listeners and run a benign replacement image that reports its identity.
important · Privilege — Management plane

An unauthenticated ASUS Control Center request can lead to a root shell and control of its managed fleet.

Affects

ASUS Control Center Enterprise, an on-premises system for centrally managing servers, PCs and workstations.

The request discloses an encryption key that composes with SSRF and embedded credentials to enable SSH on TCP/2222 and supply a root login.

Detail and 2 sources
important · Research — Bridge security

An eclipse attack and a fallback-validation gap made Alephium guardians sign unauthorized asset movements.

Affects

Alephium TokenBridge's hosted watcher, full-node, and guardian infrastructure connecting Alephium with Ethereum and BNB Chain.

The fallback path accepted a crafted bridge-formatted event without normal validation, producing guardian signatures that could withdraw collateral and mint unbacked wALPH.

Detail and 2 sources

Alephium reports that the chain was used and has published a fix.

important · Firmware — Cudy routers

A fleet-wide Cudy mesh credential now has a demonstrated path to root on WR3000 and implicated P5 routers.

Affects

Cudy WR3000 2.0 Wi-Fi routers and P5 5G routers running the affected OpenWrt-derived firmware.

A forged JWT reaches the plaintext MQTT broker, and the consuming command handler passes attacker input to a root shell.

Detail and 4 sources

We do not know whether a network-only peer can derive the required device identifier or which P5 versions are affected.

Composition to watch
Reach TCP/1883 and obtain the target identifierForge a JWT with the fleet-wide secretPublish a command consumed by the root shellThe cheapest path to the target identifier and the P5 version boundary remain unknown.
Unverified compositionPublish the working exploit, derive the identifier from a stock device over the network, or compare affected and fixed P5 firmware.
important · RCE — Job scheduling

PowerJob's unauthenticated server and worker transports expose two direct paths to code execution.

Affects

PowerJob, a Java distributed job-scheduling and computing framework whose server and worker components commonly run in containers on Linux.

The server turns a selected Spring bean method into Groovy evaluation, while the worker downloads an attacker-selected JAR and initializes its Spring context.

Detail and 6 sources
important · Edge — Geoportals

Two GeoNetwork flaws compose into unauthenticated operating-system command execution.

Affects

GeoNetwork, a self-hosted geospatial metadata catalog commonly deployed as an agency or government geoportal, including its official Docker image.

An unprotected upload stores an attacker formatter, after which Saxon evaluates its Java extension functions without secure-processing restrictions.

Detail and 3 sources
important · RCE — Integration runners

A reachable self-hosted Nango runner still accepts executable JavaScript with authentication off by default.

Affects

Nango's self-hosted integration-automation runner, which executes customer integration code in Linux containers or Kubernetes pods.

The scope excludes Nango Cloud and runners isolated from untrusted peers.

Detail and 4 sources
important · Privilege — SonicWall NSM

A delegated SonicWall NSM administrator can become SuperAdmin and execute commands on the management host.

Affects

SonicWall Network Security Manager On-Prem, the Linux-based control plane used to centrally administer SonicWall security infrastructure.

Missing authorization reaches SuperAdmin, which exposes a separate operating-system command-injection path; an existing delegated account is required.

Detail and 5 sources
important · Wi-Fi — RouterOS

A RouterOS SSH identity named '-2' can replace its read-only policy mask with full administration.

Affects

MikroTik RouterOS, the operating system used by MikroTik routers and CHR virtual routers.

The path depends on an authentication backend accepting the literal username, after which PTY bytes replace fields carried through a trusted file descriptor.

Detail and 3 sources
important · Privilege — Linux/XFS

An XFS range-exchange flaw lets a local user rewrite readable root-owned files and become root.

Affects

The Linux kernel XFS filesystem when its experimental exchange_range feature is enabled.

The exploit requires the experimental exchange_range feature and abuses a cleared reflink flag so writes to a clone land on the privileged source file's shared blocks.

Detail and 2 sources
important · Wi-Fi — RouterOS

A RouterOS read-only operator can control native execution in the x86 mtget helper.

Affects

MikroTik RouterOS, the operating system used by MikroTik routers and CHR virtual routers; exploit control was demonstrated on x86 CHR.

A test-policy account invokes /tool fetch with an overlong TFTP pathname, overwriting saved EIP and the post-return stack.

Detail and 2 sources
important · Wi-Fi — TP-Link

A LAN observer can recover the administrator password from an Archer AX55 v4 login session.

Affects

TP-Link Archer AX55 v4, a consumer Wi-Fi router running embedded firmware.

The observer must capture an actual HTTP login, then uses a shared RSA private key and weakened AES session key to decrypt the reusable password.

Detail and 2 sources
important · Bluetooth

A local BlueZ media client can trigger a use-after-free in root bluetoothd during LE Audio teardown.

Affects

BlueZ, the Linux Bluetooth userspace stack and system bluetoothd daemon, when LE Audio uses linked media transports.

A replaced owner can retain a disconnect watch and transport pointer after the transport is freed, causing its later disconnect callback to dereference freed memory.

Detail and 4 sources

We do not know whether a client can deterministically reuse the allocation and influence callback-reachable data.

Composition to watch
Create competing ownership around linked LE Audio transportsFree a transport while the old owner retains its pointerDisconnect the old owner and dereference freed memoryAllocator control beyond a crash has not been demonstrated.
Unverified compositionReproduce under ASan with two competing owners, groom the freed allocation, and test influence over callback fields or control flow.
important · Wi-Fi — TP-Link

Crafted LAN input can crash the Archer AX55 v4 EasyMesh daemon; execution remains unproven.

Affects

TP-Link Archer AX55 v4, a consumer Wi-Fi router running embedded firmware with optional EasyMesh mode.

The demonstrated path requires LAN reachability and Mesh mode, then triggers a stack overflow that terminates the daemon.

Detail and 3 sources

The public material does not establish execution control, daemon privilege, or mitigation behavior.

Composition to watch
Reach an Archer AX55 v4 over its LAN with Mesh enabledSend crafted EasyMesh inputTrigger a stack overflow and daemon crashControl of execution and the process privilege remain unknown.
Unverified compositionObtain the research report or diff the firmware, then measure overwrite control, privilege, ASLR, canaries, and NX.
important · Research — Browser

Google says attackers are exploiting a V8 type confusion in Chrome.

Affects

Google Chrome, the web browser on Android and desktop operating systems.

The established path begins when Chrome loads attacker-controlled web content and reaches the V8 type confusion tracked as CVE-2026-85046.

Detail and 3 sources

Google has published a fix. We still do not know what the exploit gains after corruption or whether it requires a separate sandbox escape.

Composition to watch
Deliver attacker-controlled web content to Chrome.Trigger the V8 type confusion tracked as CVE-2026-85046.Google observes exploitation in the wild.The restricted record leaves the resulting memory primitive, renderer control, and any sandbox escape unestablished.
Unverified compositionObtain the restricted Chromium bug, an incident artifact, or a working testcase and establish the memory primitive, process control, and escape requirements.
Also noted1
Boot chain
A malicious USB peripheral can make U-Boot read beyond fixed descriptor arrays before the operating system starts.
every source is a publisher ruled unable to originate; not published as a finding
ResearchU-Boot USB host trusts advertised interface count after parsing fewer interfaces
What was checked · 4 quiet
Wi-FiQuiet

Three public RouterOS paths broke SSH possession, read-only policy, and native-execution assumptions under narrow prerequisites.

Zero-clickQuiet

No new zero-click capability was confirmed; the missing August Android vulnerability table prevents a complete quiet finding.

Physical accessQuiet

The U-Boot USB result stops at out-of-bounds reads; no new disk-encryption, Secure Boot, TPM, or locked-device bypass was established.

MobileQuiet

The exploited Chrome V8 flaw reaches Android through the Chrome application; no separate mobile-platform primitive was confirmed.

Get it by email

The same brief, every morning. One email a day, nothing else.

fullchain.sh follows the day’s disclosures from bug to shell — what each one enables, what it links to, and where the fix left the primitive in place.

Every finding here carries a source that was checked before it published. If something is wrong, write to admin@fullchain.sh — corrections are published on the day they affect.

Saturday, September 5, 2026