Topic

CVE

Latest CVE coverage — 14 articles.

MikroTik RouterOS Under Active Attack (CVE-2026-86060): When There's No CVSS Score to Wait For
Security Alert

MikroTik RouterOS Under Active Attack (CVE-2026-86060): When There's No CVSS Score to Wait For

MikroTik RouterOS is being actively exploited, and CVE-2026-86060 is in the CISA KEV catalog. Here is the interesting part for anyone who prioritizes by severity score: at the time of writing, this CVE has no CVSS score. NVD has not analyzed it yet. If your triage process starts with "what's the CVSS," this one falls through the cracks while attackers are already using it. That gap is exactly what SSVC is built to close. What the vulnerability is CVE-2026-86060 is a privilege escalation flaw

3 min read
What is a CVE? A Plain-English Guide for Engineering Teams
CVE

What is a CVE? A Plain-English Guide for Engineering Teams

A CVE is a license plate for vulnerabilities. You don't need to memorize acronyms — you need three things: how to tell if a CVE matters to you, what the score means, and what to do when one shows up in your stack.

7 min read