Security researchers identified three critical vulnerabilities in Extreme Networks’ HiveOS (CVE-2025-27229, CVE-2025-27228, CVE-2025-27227) allowing attackers to escalate privileges, decrypt passwords, and execute commands. Extreme Networks issued a patch (10.7r5) to address these flaws. The vulnerabilities, which pose significant risks, have been added to CISA’s Known Exploited Vulnerabilities Catalog, mandating federal agencies to patch by March 2025.

Palo Alto PAN-OS Authentication Bypass Vulnerability Actively Exploited in the Wild
A critical authentication-bypass vulnerability affecting Palo Alto Networks PAN-OS and Prisma Access is being actively exploited by malicious actors. In response to mounting attacks, the


