CVE-2026-0073
published 2026-05-04CVE-2026-0073: In adbd_tls_verify_cert of auth.cpp, there is a possible bypass of wireless ADB mutual authentication due to a logic error in the code. This could lead to…
PriorityP356high8.8CVSS 3.1
AVAACLPRNUINSUCHIHAH
EPSS
0.54%
42.2th percentile
In adbd_tls_verify_cert of auth.cpp, there is a possible bypass of wireless ADB mutual authentication due to a logic error in the code. This could lead to remote (proximal/adjacent) code execution as the shell user with no additional execution privileges needed. User interaction is not needed for exploitation.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
vendor_redhat4.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-6hgp-j96h-rqw4: In adbd_tls_verify_cert of auth
ghsa_unreviewed·2026-05-04
CVE-2026-0073 [HIGH] CWE-303 GHSA-6hgp-j96h-rqw4: In adbd_tls_verify_cert of auth
In adbd_tls_verify_cert of auth.cpp, there is a possible bypass of wireless ADB mutual authentication due to a logic error in the code. This could lead to remote (proximal/adjacent) code execution as the shell user with no additional execution privileges needed. User interaction is not needed for exploitation.
VulDB
Google Android 14/15/16/16-qpr2 auth.cpp adbd_tls_verify_cert incorrect implementation of authentication algorithm
vuldb·2026-05-04·CVSS 8.8
CVE-2026-0073 [HIGH] Google Android 14/15/16/16-qpr2 auth.cpp adbd_tls_verify_cert incorrect implementation of authentication algorithm
A vulnerability was found in Google Android 14/15/16/16-qpr2 and classified as critical. Affected is the function adbd_tls_verify_cert of the file auth.cpp. The manipulation results in incorrect implementation of authentication algorithm.
This vulnerability was named CVE-2026-0073. The attack needs to be approached within the local network. There is no available exploit.
Red Hat
vim: Vim: Arbitrary code execution via OS command injection in the netrw plugin
vendor_redhat·2026-02-27·CVSS 4.4
CVE-2026-28417 [MEDIUM] CWE-78 vim: Vim: Arbitrary code execution via OS command injection in the netrw plugin
vim: Vim: Arbitrary code execution via OS command injection in the netrw plugin
Vim is an open source, command line text editor. Prior to version 9.2.0073, an OS command injection vulnerability exists in the `netrw` standard plugin bundled with Vim. By inducing a user to open a crafted URL (e.g., using the `scp://` protocol handler), an attacker can execute arbitrary shell commands with the privileges of the Vim process. Version 9.2.0073 fixes the issue.
A flaw was found in Vim, an open-source command-line text editor. Specifically, an operating system (OS) command injection vulnerability exists in the `netrw` standard plugin. A remote attacker could exploit this by tricking a user into opening a specially crafted URL, such as one using the `scp://` protocol handler. Successful exploitat
No detection rules found.
No public exploits indexed.
Hackernews
⚡ Weekly Recap: Linux Rootkit, macOS Crypto Stealer, WebSocket Skimmers and More
blogs_hackernews·2026-05-11·CVSS 9.3
CVE-2026-6973 [CRITICAL] ⚡ Weekly Recap: Linux Rootkit, macOS Crypto Stealer, WebSocket Skimmers and More
Home
Threat Intelligence
Vulnerabilities
Cyber Attacks
Webinars
Expert Insights
Awards
Webinars
Awards
Free eBooks
About THN
Jobs
Advertise with us
## ⚡ Weekly Recap: Linux Rootkit, macOS Crypto Stealer, WebSocket Skimmers and More
Rough Monday.
Somebody poisoned a trusted download again, somebody else turned cloud servers into public housing, and a few crews are still getting into boxes with bugs that should’ve died years ago — the same old holes, same lazy access paths, same “how the hell is this still open” feeling. One report this week basically reads like a guy tripped over root access by accident and decided to stay there.
The weird part is how normal this all sounds now. Fake updates. Quiet backdoors. Remote tools are used like skeleton keys. Forum rats swapping st
Bugzilla
CVE-2026-28417 vim: Vim: Arbitrary code execution via OS command injection in the netrw plugin
bugzilla·2026-02-27·CVSS 4.4
CVE-2026-28417 [MEDIUM] CVE-2026-28417 vim: Vim: Arbitrary code execution via OS command injection in the netrw plugin
CVE-2026-28417 vim: Vim: Arbitrary code execution via OS command injection in the netrw plugin
Vim is an open source, command line text editor. Prior to version 9.2.0073, an OS command injection vulnerability exists in the `netrw` standard plugin bundled with Vim. By inducing a user to open a crafted URL (e.g., using the `scp://` protocol handler), an attacker can execute arbitrary shell commands with the privileges of the Vim process. Version 9.2.0073 fixes the issue.
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 10.0 Extended Update Support
Via RHSA-2026:6502 https://access.redhat.com/errata/RHSA-2026:6502
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 9.4 Extended Update Support
Via RHSA-2026
2026-05-04
Published